user-story-creation
Pass
Audited by Gen Agent Trust Hub on Jul 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is to provide structured instructions for user story creation. It follows best practices and does not include any executable code or risky scripts.
- [PROMPT_INJECTION]: Analysis of instructions revealed no attempts to bypass safety filters or override agent behavior. The instructions suggest reading GitHub epic issues, which presents a surface for indirect prompt injection, but the skill itself contains no malicious payloads.
- [DATA_EXFILTRATION]: No sensitive file access or unauthorized network operations were identified. References to external domains are restricted to the vendor's distribution site (TomeVault) and the original source on GitHub.
- [COMMAND_EXECUTION]: References to the /re:create-stories command describe tool-specific routing logic rather than arbitrary shell execution.
Audit Metadata