xilinx-suite
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted user input describing hardware and software design tasks to generate executable scripts (.tcl, .py, .sh).
- Ingestion points: User task descriptions and requirements specified during the multi-step interaction defined in
SKILL.md. - Boundary markers: None present to delimit user-provided data from system instructions or generated script templates.
- Capability inventory: The skill is designed to generate multiple types of executable scripts and configuration files across different toolchains (Vivado, Vitis, PetaLinux).
- Sanitization: No evidence of sanitization or validation of user-provided content before it is interpolated into generated scripts.
Audit Metadata