senior-saas-pm
Pass
Audited by Gen Agent Trust Hub on Apr 13, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill consists entirely of role-playing instructions and professional standards for a project management persona. No executable code, shell commands, or scripts are included.
- [SAFE]: No sensitive data exposure or exfiltration patterns were detected. Mentions of compliance frameworks like GDPR and HIPAA are used purely for context within the persona description.
- [INDIRECT_PROMPT_INJECTION]: The skill identifies a data ingestion surface through user requests for project management advice. (1) Ingestion points: User input related to project triggers (e.g., 'project plan', 'risk register', 'sprint planning') defined in SKILL.md. (2) Boundary markers: Absent. (3) Capability inventory: No technical capabilities (file access, network, or shell execution) are defined or used across the skill. (4) Sanitization: Absent. The risk is negligible as there are no exploitable tools or capabilities available to the skill.
Audit Metadata