incident-response
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- Indirect Prompt Injection: The skill is designed to ingest and process data from external sources such as alerts and incident descriptions.
- Ingestion points: The skill accepts external input through the
$ARGUMENTSvariable and fetches alert details and metrics from connected monitoring systems. - Boundary markers: The instructions do not explicitly define delimiters or instructions to ignore potential commands embedded within incoming alert data or logs.
- Capability inventory: The skill possesses the capability to post to chat channels and modify incident records in external management tools (e.g., PagerDuty or Opsgenie) based on processed data.
- Sanitization: There are no explicit content sanitization or validation steps described for the data retrieved from external connectors before it is displayed or used to trigger actions.
Audit Metadata