doc-sync

Pass

Audited by Gen Agent Trust Hub on Feb 21, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • Prompt Injection (LOW): The skill presents a surface area for indirect prompt injection (Category 8) as it reads and processes untrusted data from repository files during documentation synchronization.\n- Ingestion points: The skill reads directory structures and file content (CLAUDE.md, README.md) throughout the repository as identified in SKILL.md.\n- Boundary markers: No explicit delimiters or instructions are provided to the agent to ignore instructions embedded in repository files during the audit or migration phases.\n- Capability inventory: The skill uses find (subprocess) for discovery and has file-write capabilities for updating documentation across the repository scope.\n- Sanitization: No sanitization or validation of the ingested repository content is performed before indexing or migration.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 21, 2026, 07:24 AM