companify-cto

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests data from several project files that could potentially contain malicious instructions if the project files are sourced from untrusted parties.
  • Ingestion points: The skill reads from .companify/company-context.md, .companify/progresso.md, company/product.md, and company/business-model.md as specified in SKILL.md.
  • Boundary markers: The instructions do not define delimiters or explicit "ignore instructions" warnings for the content read from these files.
  • Capability inventory: The skill possesses the capability to write to the file system, specifically company/technology.md and .companify/progresso.md.
  • Sanitization: No sanitization or validation logic is defined for the content extracted from the context files before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 10:25 PM
Security Audit — agent-trust-hub — companify-cto