codebase-cleanup-tech-debt
Pass
Audited by Gen Agent Trust Hub on Aug 5, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is entirely instructional and provides templates for technical debt reporting and remediation planning. It does not perform any network operations, command execution, or sensitive file access.
- [SAFE]: No hardcoded credentials, obfuscation, or persistence mechanisms were detected. The skill does not request or use any specialized permissions.
- [PROMPT_INJECTION]: The skill processes user-provided codebase data via the '$ARGUMENTS' variable. While this provides a surface for indirect prompt injection, it is considered safe in this context as the skill lacks active capabilities to be exploited. 1. Ingestion points: Requirements section via '$ARGUMENTS'. 2. Boundary markers: None present. 3. Capability inventory: None; the skill provides guidance without calling external tools or subprocesses. 4. Sanitization: None present.
Audit Metadata