defense-maintenance
Pass
Audited by Gen Agent Trust Hub on Mar 23, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: Indirect prompt injection surface. The skill ingests untrusted data from the local project environment and user-supplied arguments to generate reports. It lacks explicit boundary markers or instructions to disregard embedded commands in the source material.\n
- Ingestion points: Untrusted data enters via the
$ARGUMENTSvariable and project-wide file scanning instructions inSKILL.md(PHASE 1).\n - Boundary markers: Absent; there are no delimiters or "ignore embedded instructions" warnings provided to the agent when processing this data.\n
- Capability inventory: The skill utilizes file system read capabilities for discovery and file system write capabilities to
docs/defense-maintenance-analysis.mdand~/.claude/projects/skill-telemetry.md.\n - Sanitization: Absent; no escaping, validation, or filtering of analyzed content is performed before the data is integrated into the agent's context.
Audit Metadata