n8n-workflow-patterns

Pass

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [PROMPT_INJECTION]: No patterns attempting to override agent instructions or bypass safety guidelines were detected in the documentation.
  • [DATA_EXFILTRATION]: The skill does not contain hardcoded credentials or instructions for exfiltrating sensitive data. It explicitly recommends against hardcoding credentials and provides guidance on using n8n's secure credential system.
  • [REMOTE_CODE_EXECUTION]: While the skill documents how to use n8n's Code nodes (including examples of executing shell commands for database backups), it does not provide or fetch any executable code itself. The examples are for educational purposes within the n8n environment.
  • [INDIRECT_PROMPT_INJECTION]: The skill identifies that workflows ingesting data from webhooks or APIs are subject to indirect injection. It provides comprehensive remediation guidance including input sanitization, the use of boundary markers (IF nodes), and least-privilege database access.
  • [NO_CODE]: The skill consists entirely of Markdown documentation and architectural patterns, containing no executable scripts, binaries, or configuration files that would perform actions on the host system.
Audit Metadata
Risk Level
SAFE
Analyzed
May 15, 2026, 12:37 PM
Security Audit — agent-trust-hub — n8n-workflow-patterns