risk-analysis
Pass
Audited by Gen Agent Trust Hub on Jun 24, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface because it is designed to ingest and analyze untrusted external data.\n
- Ingestion points: Workflow Phase 1 in
SKILL.mddescribes gathering inputs from project plans, schedules, and stakeholder concerns.\n - Boundary markers: No explicit boundary markers or instructions to isolate external data are provided.\n
- Capability inventory: The frontmatter allows the use of
Read,Glob,Grep,Task, andSkilltools.\n - Sanitization: The instructions do not include steps for sanitizing or validating external content.
Audit Metadata