competition-windows-pivot

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill is designed to analyze untrusted data from a Windows host, including event logs, PowerShell history, and sensitive system artifacts. This creates a surface for indirect prompt injection where malicious instructions embedded in the analyzed data could attempt to influence the agent's behavior.
  • Ingestion points: SAM, SECURITY, SYSTEM, NTDS, DPAPI, LSA secrets, browser stores, PowerShell history, ETW, Sysmon, and event logs.
  • Boundary markers: None identified in the provided instructions to differentiate between system data and agent instructions.
  • Capability inventory: The skill instructs the agent to map protocols, inspect ACLs/GPOs, and report on privilege movement.
  • Sanitization: No explicit sanitization or validation of the ingested host artifacts is described.
  • [NO_CODE]: No executable scripts, binaries, or installation manifests are included in the skill. The logic is entirely contained within markdown instructions and YAML configuration.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 09:26 AM
Security Audit — agent-trust-hub — competition-windows-pivot