lyt-learning

Pass

Audited by Gen Agent Trust Hub on Jul 9, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill instructions facilitate an indirect prompt injection surface through the ingestion of external resources.\n
  • Ingestion points: The skill explicitly reads user-provided PDF, Word, and Markdown documents to use as primary learning materials as specified in SKILL.md rule 12.\n
  • Boundary markers: The agent is not provided with strict delimiters or instructions to ignore potential commands embedded within the external files, although rule 13 suggests a conceptual distinction of viewpoints.\n
  • Capability inventory: The skill possesses file system capabilities to create directories and write learning articles in Markdown format within the local workspace.\n
  • Sanitization: There is no evidence of sanitization or content validation for data extracted from external documents before it is utilized in the learning loop or saved to the project files.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 9, 2026, 05:01 AM
Security Audit — agent-trust-hub — lyt-learning