privacy-audit
Pass
Audited by Gen Agent Trust Hub on Aug 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill performs legitimate security and privacy auditing functions by searching for sensitive data patterns to ensure compliance and identify leaks. The instructions are consistent with the stated purpose of auditing product data intake and storage.
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from the codebase and application logs, which presents a surface for indirect injection.
- Ingestion points: Application source code, logs, and API response payloads.
- Boundary markers: None specified for the data being processed via grep.
- Capability inventory: File system access and pattern matching via grep across project files.
- Sanitization: No explicit sanitization or filtering is described for the content found during the audit process before it is reported to the user.
Audit Metadata