context-engineering

Pass

Audited by Gen Agent Trust Hub on Jul 20, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No attempts to override agent safety guidelines or bypass system instructions were detected. The instructions are focused on adherence to project-specific documentation (e.g., CLAUDE.md).
  • [DATA_EXFILTRATION]: There are no network operations, credential access, or sensitive file read commands. The skill operates purely on context and repository structure.
  • [REMOTE_CODE_EXECUTION]: The skill does not define any external dependencies, shell commands, or script execution patterns.
  • [INDIRECT_PROMPT_INJECTION]: While the skill acknowledges that user-provided content is an ingestion point for untrusted data, it specifically instructs the agent to treat such content as untrusted and to validate it at boundaries, which is a defensive security practice.
  • [COMMAND_EXECUTION]: No shell commands or system-level interactions are present in the provided files.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 20, 2026, 01:29 PM
Security Audit — agent-trust-hub — context-engineering