product-lens

Pass

Audited by Gen Agent Trust Hub on Jun 24, 2026

Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection.
  • Ingestion points: The skill reads project metadata including README, CLAUDE.md, package.json, and recent commit messages (Mode 2).
  • Boundary markers: No specific delimiters or instructions to ignore embedded commands are present in the provided skill text.
  • Capability inventory: The skill is designed to analyze project state and provides instructions to 'Clone/install the product', which may involve executing build scripts or installation commands.
  • Sanitization: There is no evidence of sanitization or filtering of the content ingested from the project files.
  • [COMMAND_EXECUTION]: Mode 3 instructions guide the agent to 'Clone/install the product as a new user'. While part of a standard product audit workflow, this step requires the execution of external installation scripts which are not verified by the skill itself.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 24, 2026, 12:58 PM
Security Audit — agent-trust-hub — product-lens