multi-port
Pass
Audited by Gen Agent Trust Hub on Jul 1, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill possesses a vulnerability surface for indirect prompt injection due to the processing of external infrastructure inventory data combined with administrative tool access.
- Ingestion points: Infrastructure inventory and cloud provider services (SKILL.md, Step 1).
- Boundary markers: Absent. There are no instructions to the agent to ignore or delimit embedded commands within the gathered inventory data.
- Capability inventory: Access to 'Bash', 'Write', and 'WebFetch' tools (SKILL.md, allowed-tools).
- Sanitization: Absent. No validation or filtering is specified for the ingested infrastructure context.
Audit Metadata