what-did-i-get-done
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests git commit messages, which are external data sources that could potentially contain malicious instructions intended to influence the generated summary.\n- Ingestion points: Commits authored by the git user (SKILL.md).\n- Boundary markers: None specified to differentiate data from instructions.\n- Capability inventory: Limited to text synthesis; no file-write or network tools are utilized in the workflow.\n- Sanitization: No sanitization of commit messages is mentioned.
Audit Metadata