project-discover-preflight-scope
Pass
Audited by Gen Agent Trust Hub on Jul 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a set of documentation guidelines for auditing and mapping local source code. It does not contain instructions to execute code, modify system settings, or transmit data externally.
- [DATA_EXPOSURE]: While the skill directs the agent to locate configuration files like
.env.example, it does so to identify project structure and dependencies rather than to access secrets. The instructions specifically focus on identifying entry points and 'Evidence Gaps' rather than extracting sensitive content. - [PROMPT_INJECTION]: The instructions use natural language to define operational boundaries (e.g., 'Red Flag List', 'Minimum Checklist') which enhance the accuracy and safety of the discovery process rather than attempting to bypass model constraints.
Audit Metadata