fixing-broken-links

Pass

Audited by Gen Agent Trust Hub on Apr 12, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: Executes curl to check the HTTP status codes of URLs found in project files.
  • [COMMAND_EXECUTION]: Uses shell file existence checks to validate local relative and absolute paths.
  • [PROMPT_INJECTION]: Potential for indirect prompt injection (Category 8) as the skill processes untrusted data (URLs) from project files. 1. Ingestion points: URLs and file paths extracted from local project files. 2. Boundary markers: Absent; the agent processes URLs directly without specific delimiters. 3. Capability inventory: Includes file read/write access, network access via curl, and web search capabilities. 4. Sanitization: No explicit validation of the extracted URLs or data retrieved from web searches is performed.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 12, 2026, 09:43 PM