skills/sharpdeveye/maestro/diagnose/Gen Agent Trust Hub

diagnose

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill's primary function is to audit user-provided code, configurations, and workflow definitions. This creates an attack surface where malicious instructions embedded in the files being analyzed could attempt to influence the agent's diagnostic results or the execution of subsequent recommended commands.
  • Ingestion points: Analyzes "actual workflow code/config" as per the "Diagnostic Checklist" in SKILL.md.
  • Boundary markers: The skill instructions do not specify the use of delimiters or "ignore" instructions to isolate the content being analyzed from the agent's core instructions.
  • Capability inventory: The skill is primarily focused on reporting, but it facilitates a transition to remediation commands (/refine, /fortify, /streamline) which may perform file modifications or network operations depending on their own definitions.
  • Sanitization: The skill lacks explicit instructions for sanitizing or escaping the content of the workflow files before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 08:01 PM