skills/tonone-ai/tonone/kube-design/Gen Agent Trust Hub

kube-design

Pass

Audited by Gen Agent Trust Hub on Jul 1, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it ingests untrusted data from the user and processes it to generate outputs while having access to sensitive tools like Bash and Write.
  • Ingestion points: User-provided context gathered in Step 0 and Step 1 (SKILL.md).
  • Boundary markers: None identified in the prompt to separate user input from agent instructions.
  • Capability inventory: The skill has access to Bash, Write, Read, WebFetch, and WebSearch (SKILL.md frontmatter).
  • Sanitization: No explicit validation or sanitization of the user-provided context is performed before output generation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 1, 2026, 02:47 PM
Security Audit — agent-trust-hub — kube-design