product-lens
Pass
Audited by Gen Agent Trust Hub on Jun 24, 2026
Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection.
- Ingestion points: The skill reads project metadata including README, CLAUDE.md, package.json, and recent commit messages (Mode 2).
- Boundary markers: No specific delimiters or instructions to ignore embedded commands are present in the provided skill text.
- Capability inventory: The skill is designed to analyze project state and provides instructions to 'Clone/install the product', which may involve executing build scripts or installation commands.
- Sanitization: There is no evidence of sanitization or filtering of the content ingested from the project files.
- [COMMAND_EXECUTION]: Mode 3 instructions guide the agent to 'Clone/install the product as a new user'. While part of a standard product audit workflow, this step requires the execution of external installation scripts which are not verified by the skill itself.
Audit Metadata