healthcare-compliance

Pass

Audited by Gen Agent Trust Hub on Mar 23, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill is a specialized auditing tool that performs static analysis of codebases against established healthcare regulations. Its behavior is consistent with its stated purpose.
  • [SAFE]: It contains explicit safety instructions to avoid code modification and to redact any Protected Health Information (PHI) encountered during the audit.
  • [SAFE]: No suspicious network activity, data exfiltration, or unauthorized command execution patterns were detected.
  • [PROMPT_INJECTION]: The skill processes untrusted codebase data, which presents a surface for indirect prompt injection. Ingestion points: Scans all project files and directories via multiple audit phases. Boundary markers: No explicit delimiters or ignore-instructions are used for the scanned content. Capability inventory: Performs project-wide file reads and writes execution telemetry to a local project memory directory. Sanitization: Instructs the agent to redact PHI and follow strict output formatting to maintain audit integrity.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 23, 2026, 10:57 AM
Security Audit — agent-trust-hub — healthcare-compliance