project-management-guru-adhd

Pass

Audited by Gen Agent Trust Hub on Mar 5, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill exhibits an attack surface for indirect prompt injection (Category 8).
  • Ingestion points: Untrusted data enters the agent context through the allowed tools mcp__firecrawl__firecrawl_search and WebFetch (referenced in SKILL.md).
  • Boundary markers: There are no instructions or delimiters defined to prevent the agent from following malicious instructions potentially embedded in external web content.
  • Capability inventory: The skill has access to file-system modification tools such as Write, Edit, and TodoWrite (referenced in SKILL.md).
  • Sanitization: There is no evidence of sanitization, filtering, or validation of the external content before it is processed by the agent or used in file operations.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 5, 2026, 07:56 PM