Investigation Patterns
Pass
Audited by Gen Agent Trust Hub on Jul 31, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines a standard framework for software engineering tasks such as debugging, pattern finding, and architecture analysis. No indicators of malicious intent, credential exfiltration, or unauthorized command execution were found.\n- [DATA_EXPOSURE]: The skill uses tools (
find_symbol,Grep,get_symbols_overview) to navigate and analyze the codebase. These tools are scoped to symbolic search and regex matching within the project context, which is consistent with the skill's primary purpose and does not represent a data exfiltration risk.\n- [PROMPT_INJECTION]: The instructions include strong defensive patterns against injection, such as the requirement to 'Independently verify claims rather than confirming assumptions' and strict 'evidence standards' involving direct code citations. These practices mitigate risks from both direct and indirect prompt injection by ensuring the agent remains grounded in source code evidence.
Audit Metadata