thirds-reuse-template
Pass
Audited by Gen Agent Trust Hub on Oct 3, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes template metadata and user-supplied data fields to generate rendered files, which represents a potential surface for indirect instructions. 1. Ingestion points: Template identifiers and metadata returned by list_templates, as well as user-provided values for design fields. 2. Boundary markers: No specific delimiters or safety instructions regarding untrusted data handling are provided. 3. Capability inventory: The skill's operations are restricted to the thirds.ai MCP toolset, specifically list_templates, render, and get_status for file processing. 4. Sanitization: The instructions do not outline sanitization or validation steps for external inputs before they are passed to the rendering engine.
Audit Metadata