competition-windows-pivot
Pass
Audited by Gen Agent Trust Hub on Jul 17, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill is designed to analyze untrusted data from a Windows host, including event logs, PowerShell history, and sensitive system artifacts. This creates a surface for indirect prompt injection where malicious instructions embedded in the analyzed data could attempt to influence the agent's behavior.
- Ingestion points: SAM, SECURITY, SYSTEM, NTDS, DPAPI, LSA secrets, browser stores, PowerShell history, ETW, Sysmon, and event logs.
- Boundary markers: None identified in the provided instructions to differentiate between system data and agent instructions.
- Capability inventory: The skill instructs the agent to map protocols, inspect ACLs/GPOs, and report on privilege movement.
- Sanitization: No explicit sanitization or validation of the ingested host artifacts is described.
- [NO_CODE]: No executable scripts, binaries, or installation manifests are included in the skill. The logic is entirely contained within markdown instructions and YAML configuration.
Audit Metadata