indexion-identity
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to process and review local project code using the
indexiontool. - Ingestion points: Local file content, folder structures, and declaration symbols are ingested by the
indexion identity auditcommand inSKILL.md. - Boundary markers: No explicit delimiters or instructions are provided to the agent to treat external code as untrusted data.
- Capability inventory: The skill utilizes
bashto execute commands likeindexion,rg(ripgrep), andmoon(build system), and suggests file operations like renaming and moving files. - Sanitization: No sanitization is performed on the code content before analysis.
- [COMMAND_EXECUTION]: The skill uses local CLI tools (
indexion,rg,moon) for static analysis and project formatting, which is standard behavior for development-oriented skills.
Audit Metadata