risk-register

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from project specifications and existing risk registers, creating a potential surface for indirect prompt injection.
  • Ingestion points: Reads "Risks and Assumptions" from relevant specifications and existing registers (SKILL.md).
  • Boundary markers: Absent. The instructions do not define specific delimiters or guidelines to distinguish data from instructions.
  • Capability inventory: None. The skill only generates formatted markdown output and does not utilize tools for file system access, network operations, or command execution.
  • Sanitization: Absent. No filtering or validation of external content is specified.
  • [NO_CODE]: The skill consists exclusively of markdown instructions and documentation. It does not include scripts, binaries, or external code dependencies.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 06:28 AM
Security Audit — agent-trust-hub — risk-register