write-flow
Pass
Audited by Gen Agent Trust Hub on Aug 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides detailed technical instructions and schema definitions for the Windmill platform.
- [COMMAND_EXECUTION]: The skill uses the wmill CLI (e.g., 'wmill flow new', 'wmill flow preview') to manage workflows. These commands are standard operations for the Windmill development environment.
- [PROMPT_INJECTION]: Instructions such as 'Do NOT tell the user to run wmill flow new' and 'skip the offer and just execute... directly' were evaluated. These were determined to be UX optimizations for agent autonomy in a development context rather than attempts to conceal malicious activity or bypass safety filters.
- [DATA_EXFILTRATION]: The skill documents how to reference Windmill resources (e.g., '$res:path/to/resource'). This is a standard feature of the platform for configuration and secret management and does not involve unauthorized exfiltration or exposure of sensitive data.
Audit Metadata