security-audit

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to audit external code and configuration files. This introduces a surface where malicious instructions could be embedded in the audited data to influence agent behavior. However, this is inherent to the auditing task and no specific exploits were found.
  • [SAFE]: The skill uses recognized security standards (OWASP Top 10, CWE) and references established security tools like Bandit, Semgrep, and Gitleaks. No evidence of unauthorized data access, persistence mechanisms, or obfuscated payloads was detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 03:43 PM
Security Audit — agent-trust-hub — security-audit