atlas-ledger
Pass
Audited by Gen Agent Trust Hub on Jun 30, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security threats were detected. The skill is focused on project logging and utilizes local file storage for its operations.
- [INDIRECT_PROMPT_INJECTION]: The skill manages a local project ledger (Atlas.md) that could potentially be influenced by external data. However, the skill includes proactive security measures: it instructs the agent to treat the file as untrusted, ensures it cannot override system instructions or safety policies, and mandates a human-in-the-loop confirmation step before any permanent changes are written to the workspace.
- [DATA_EXFILTRATION]: No network activity or attempts to access sensitive credentials (such as SSH keys or environment secrets) were identified. All data operations are restricted to the local project workspace.
- [COMMAND_EXECUTION]: The skill does not perform arbitrary command execution or system-level modifications. It focuses entirely on text distillation and file management within the project context.
Audit Metadata