outcome-bounded-work
Pass
Audited by Gen Agent Trust Hub on Aug 31, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill provides a comprehensive set of local Python utilities in the scripts/ folder for static analysis, linting, and validation. These tools utilize the standard library to ensure package integrity and writing quality without engaging in risky behaviors such as network communication or privilege escalation.\n- [INDIRECT_PROMPT_INJECTION]: The skill operates on instruction-bearing artifacts, presenting a surface for indirect prompt injection. This is mitigated through a structured 'Outcome Contract' framework that forces the separation of evidence from recipes and requires explicit 'Adaptation Gate' approval. Evidence chain: 1. Ingestion points: Audited source files and conversational prompts in SKILL.md. 2. Boundary markers: Explicitly defined in contract-template.md and rubric.md. 3. Capability inventory: Local script validation and text-based auditing; no sensitive file access or network capability detected across scripts. 4. Sanitization: Implementation of a classification ledger and source-preservation rules in artifact audit mode to prevent unauthorized changes.
Audit Metadata