incident-response

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • Indirect Prompt Injection: The skill is designed to ingest and process data from external sources such as alerts and incident descriptions.
  • Ingestion points: The skill accepts external input through the $ARGUMENTS variable and fetches alert details and metrics from connected monitoring systems.
  • Boundary markers: The instructions do not explicitly define delimiters or instructions to ignore potential commands embedded within incoming alert data or logs.
  • Capability inventory: The skill possesses the capability to post to chat channels and modify incident records in external management tools (e.g., PagerDuty or Opsgenie) based on processed data.
  • Sanitization: There are no explicit content sanitization or validation steps described for the data retrieved from external connectors before it is displayed or used to trigger actions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 04:49 PM
Security Audit — agent-trust-hub — incident-response