evidence-docs
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill includes a bash script template (
templates/docgate.sh) designed for repository auditing. It utilizes standard Unix utilities includingawk,grep,sed, andgit. Command injection risks are mitigated by restricting input togitcommands (e.g., commit SHAs) to specific regex patterns limited to hex characters. - [INDIRECT_PROMPT_INJECTION]: The auditing script processes markdown files that could potentially contain untrusted data. Ingestion points: Markdown files within the
docs/directory and the repository root. Boundary markers: Thestrip_asidesfunction usesawkto remove fenced code blocks and HTML comments from the text being analyzed. Capability inventory: Execution of shell commands viagit,awk, andgrepwithin the template script. Sanitization: Input is normalized (whitespace adjustment, emphasis removal) and filtered byawklogic before regex patterns are applied. The deterministic nature of the script's checks significantly limits exploitation risk. - [SAFE]: All external URLs and resources reference official vendor infrastructure (
ssheleg) or well-known services. The skill promotes robust documentation security practices, including append-only logs and verification of claims against immutable version control history.
Audit Metadata