ts-morph-analyzer

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill analyzes external source code provided by the user, which is a potential ingestion point for indirect prompt injection. Malicious instructions could be embedded in JSDoc comments or function names within the code being analyzed.\n
  • Ingestion points: The scripts in the scripts/ directory ingest user-provided source files.\n
  • Boundary markers: The current implementation does not use explicit delimiters to separate the analyzed code content from the agent's context in the output.\n
  • Capability inventory: The skill is limited to file system read access for the purpose of static analysis.\n
  • Sanitization: Content extracted from the source files (like JSDoc) is not sanitized before being presented to the agent.\n- [SAFE]: The skill's primary functionality is local static analysis, which is consistent with its documentation. It does not perform network requests, access sensitive system files (e.g., SSH keys, AWS credentials), or attempt to persist across sessions. All Node.js dependencies are standard and appropriate for the skill's purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 03:47 PM
Security Audit — agent-trust-hub — ts-morph-analyzer