competition-windows-pivot

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill defines a workflow in SKILL.md for analyzing potentially untrusted system data, such as registry hives (SAM, SYSTEM) and event logs, which constitutes a surface for indirect prompt injection. However, since the skill contains no executable code or automated tools, the risk is negligible.
  • Ingestion points: System artifacts and logs referenced in the 'Recover The Replay Material' section of SKILL.md.
  • Boundary markers: The instructions do not specify markers to delimit untrusted content.
  • Capability inventory: No scripts, subprocess calls, or automated capabilities are included in the skill files.
  • Sanitization: No sanitization or validation of ingested data is described.
  • [NO_CODE]: The skill consists exclusively of markdown documentation and YAML configuration files; no executable scripts or binaries are provided.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 03:16 AM
Security Audit — agent-trust-hub — competition-windows-pivot