list-members
Pass
Audited by Gen Agent Trust Hub on Feb 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE] (SAFE): No malicious patterns or security vulnerabilities were identified in the skill. Its functionality is strictly limited to reading and displaying local configuration data related to the team roster.
- [PROMPT_INJECTION] (SAFE): Potential for indirect prompt injection via .architecture/members.yml was evaluated. 1. Ingestion points: .architecture/members.yml. 2. Boundary markers: Absent; the data is parsed and displayed in markdown format. 3. Capability inventory: The skill only has access to the Read tool. 4. Sanitization: Absent. Given that the skill lacks any execution or network tools, the overall risk is categorized as safe.
Audit Metadata