risk-analysis

Pass

Audited by Gen Agent Trust Hub on Jun 24, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface because it is designed to ingest and analyze untrusted external data.\n
  • Ingestion points: Workflow Phase 1 in SKILL.md describes gathering inputs from project plans, schedules, and stakeholder concerns.\n
  • Boundary markers: No explicit boundary markers or instructions to isolate external data are provided.\n
  • Capability inventory: The frontmatter allows the use of Read, Glob, Grep, Task, and Skill tools.\n
  • Sanitization: The instructions do not include steps for sanitizing or validating external content.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 24, 2026, 06:17 PM
Security Audit — agent-trust-hub — risk-analysis