prod-prd-writing

Pass

Audited by Gen Agent Trust Hub on Sep 7, 2026

Risk Level: SAFENO_CODEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill consists of natural language instructions and templates for document creation. It contains no scripts, binary files, or network-enabled commands.\n- [NO_CODE]: The skill does not include any executable code or scripts, significantly reducing the potential attack surface.\n- [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from user feedback and stakeholder inputs. \n
  • Ingestion points: User feedback, business problems, and stakeholder input defined in the Input section of SKILL.md.\n
  • Boundary markers: None identified.\n
  • Capability inventory: No subprocess calls, network operations, or file-system write capabilities found.\n
  • Sanitization: None identified.\n
  • Risk Assessment: Although the skill processes untrusted data, it lacks the capabilities necessary to facilitate exfiltration or command execution, rendering the surface non-exploitable.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 7, 2026, 03:00 AM
Security Audit — agent-trust-hub — prod-prd-writing