ai-context-dot-md
Pass
Audited by Gen Agent Trust Hub on Sep 3, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes content from the repository (README, existing CONTEXT.md, source code) to generate architectural documentation, creating a surface for instructions embedded in the codebase to influence the agent.\n
- Ingestion points: The agent reads file structures, existing project documentation, and key source files as instructed in
SKILL.md(Step 2 and Review Mode).\n - Boundary markers: The skill does not define specific delimiters or instructions to ignore embedded prompts within the files it analyzes.\n
- Capability inventory: The skill utilizes file system read and write operations but does not have network access or the ability to execute code.\n
- Sanitization: There is no evidence of sanitization or validation of the ingested repository content before processing.
Audit Metadata