loop-me
Pass
Audited by Gen Agent Trust Hub on Jul 16, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: Indirect Prompt Injection Surface (Category 8).
- Ingestion points: The agent gathers context by reading existing content from
workflows/*.mdandNOTES.md(SKILL.md). - Boundary markers: No explicit delimiters or instructions to ignore embedded commands within ingested files are defined in the instructions.
- Capability inventory: The skill is authorized to perform file system operations (create, edit, delete) specifically within the
workflows/directory. - Sanitization: No input validation or escaping mechanisms are specified for content read from the workspace before it is processed by the agent.
Audit Metadata