risk-register
Pass
Audited by Gen Agent Trust Hub on Sep 4, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from project specifications and existing risk registers, creating a potential surface for indirect prompt injection.
- Ingestion points: Reads "Risks and Assumptions" from relevant specifications and existing registers (SKILL.md).
- Boundary markers: Absent. The instructions do not define specific delimiters or guidelines to distinguish data from instructions.
- Capability inventory: None. The skill only generates formatted markdown output and does not utilize tools for file system access, network operations, or command execution.
- Sanitization: Absent. No filtering or validation of external content is specified.
- [NO_CODE]: The skill consists exclusively of markdown instructions and documentation. It does not include scripts, binaries, or external code dependencies.
Audit Metadata