project-roadmap
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes content from external files which acts as an attack surface for indirect prompt injection.
- Ingestion points: Reads
ROADMAP.md,ROADMAP-INFRA.md, andFUTURE_FEATURES.mdinSKILL.mdto identify active tasks. - Boundary markers: None; the skill does not instruct the agent to distinguish between its own logic and instructions found within the processed files.
- Capability inventory: The skill is limited to displaying scannable lists and recommending actions within the chat interface. It has no network access, file write permissions, or command execution capabilities.
- Sanitization: No input validation or sanitization of the file content is performed.
Audit Metadata