service-design-ingest

Pass

Audited by Gen Agent Trust Hub on May 5, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security risks were detected. The skill acts as a template for processing organizational data and explicitly includes a 'Do Not Auto-Apply' safety mechanism to ensure human oversight.
  • [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection as it is designed to ingest and process untrusted external data (pasted content, file paths, and URLs). This risk is mitigated to a safe level by the skill's operational design which requires human verification of all outputs.
  • Ingestion points: The skill accepts source material from pasted text, local file paths, and external URLs as described in SKILL.md.
  • Boundary markers: No specific delimiters or safety instructions are defined to encapsulate the ingested source material.
  • Capability inventory: The skill is instructed to read local files/URLs and generate proposed changes for the docs/service-design/ directory.
  • Sanitization: No input sanitization or validation logic is present in the instruction set.
Audit Metadata
Risk Level
SAFE
Analyzed
May 5, 2026, 08:53 PM
Security Audit — agent-trust-hub — service-design-ingest