skills/rca32/skills/codebase-design/Gen Agent Trust Hub

codebase-design

Pass

Audited by Gen Agent Trust Hub on Aug 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill operates as a read-only design workflow. It is explicitly instructed not to edit files, commit changes, or perform network operations, which significantly limits the attack surface.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external data such as repository instructions, architecture decisions, and code. While this presents an ingestion surface for untrusted data, the risk is minimal because the skill lacks capabilities to execute commands, write to the filesystem, or perform network requests. It also includes specific instructions to ignore non-normative content and respect authority boundaries.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 18, 2026, 03:26 AM
Security Audit — agent-trust-hub — codebase-design