list-members

Pass

Audited by Gen Agent Trust Hub on Feb 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE] (SAFE): No malicious patterns or security vulnerabilities were identified in the skill. Its functionality is strictly limited to reading and displaying local configuration data related to the team roster.
  • [PROMPT_INJECTION] (SAFE): Potential for indirect prompt injection via .architecture/members.yml was evaluated. 1. Ingestion points: .architecture/members.yml. 2. Boundary markers: Absent; the data is parsed and displayed in markdown format. 3. Capability inventory: The skill only has access to the Read tool. 4. Sanitization: Absent. Given that the skill lacks any execution or network tools, the overall risk is categorized as safe.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 21, 2026, 03:13 PM