rc-to-prd
Pass
Audited by Gen Agent Trust Hub on Jun 20, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is designed to ingest and summarize codebase content and conversation history, which creates a surface for indirect prompt injection.
- Ingestion points: The skill explores the current codebase and uses the conversation context to generate the PRD.
- Boundary markers: No specific boundary markers or instructions to ignore instructions within the ingested data are present in the skill definition.
- Capability inventory: The agent is authorized to explore the repository and publish content to a project issue tracker.
- Sanitization: There is no evidence of content sanitization or validation before the synthesized PRD is published to the issue tracker.
- [SAFE]: No patterns of code obfuscation, hardcoded credentials, or unauthorized remote code execution were detected. The network operation (publishing to an issue tracker) is consistent with the skill's stated primary purpose.
Audit Metadata