context-engineering
Pass
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No attempts to override agent safety guidelines or bypass system instructions were detected. The instructions are focused on adherence to project-specific documentation (e.g., CLAUDE.md).
- [DATA_EXFILTRATION]: There are no network operations, credential access, or sensitive file read commands. The skill operates purely on context and repository structure.
- [REMOTE_CODE_EXECUTION]: The skill does not define any external dependencies, shell commands, or script execution patterns.
- [INDIRECT_PROMPT_INJECTION]: While the skill acknowledges that user-provided content is an ingestion point for untrusted data, it specifically instructs the agent to treat such content as untrusted and to validate it at boundaries, which is a defensive security practice.
- [COMMAND_EXECUTION]: No shell commands or system-level interactions are present in the provided files.
Audit Metadata