deploy-checklist
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- Indirect Prompt Injection Surface: The skill includes functionality to ingest data from external development tools like source control and CI/CD pipelines to assist in checklist generation.
- Ingestion points: The instructions reference retrieving information from release diffs, pull request details, and pipeline status reports.
- Boundary markers: The skill does not currently implement specific delimiters or 'ignore' instructions for the external content it processes.
- Capability inventory: The skill's primary function is generating a markdown-formatted report for the user.
- Sanitization: No specific filtering or validation mechanisms for the external metadata are defined within the skill's instructions.
Audit Metadata