skills/rca32/skills/domain-modeling/Gen Agent Trust Hub

domain-modeling

Pass

Audited by Gen Agent Trust Hub on Aug 13, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes repository content that could contain embedded malicious instructions designed to influence the agent's behavior during modeling.
  • Ingestion points: The skill reads repository instructions, authoritative domain models, specifications, and implementation evidence (SKILL.md).
  • Boundary markers: No explicit delimiters or 'ignore' instructions for external content are defined in the instructions to protect against embedded commands.
  • Capability inventory: The skill has the ability to invoke documenting-work for repository persistence and references other tools like tdd and codebase-design (SKILL.md).
  • Sanitization: There is no evidence of sanitization or validation of the ingested repository data prior to its use in the domain modeling process.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 13, 2026, 01:57 AM
Security Audit — agent-trust-hub — domain-modeling