source-command-excellence

Pass

Audited by Gen Agent Trust Hub on Jun 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill instructions do not contain any evidence of malicious patterns, direct prompt injection, or obfuscation. No hardcoded credentials or unauthorized network operations were found.
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it is designed to ingest and analyze untrusted data from external project repositories.
  • Ingestion points: Project source code, architectural designs, and documentation files.
  • Boundary markers: None; the instructions do not provide delimiters or warnings for the agent to ignore instructions embedded within the analyzed project files.
  • Capability inventory: The skill utilizes the host agent's file system read capabilities to perform deep project exploration.
  • Sanitization: No sanitization or validation of the ingested content is performed before the evaluation logic is applied.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 22, 2026, 09:39 AM
Security Audit — agent-trust-hub — source-command-excellence