what-did-i-get-done

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests git commit messages, which are external data sources that could potentially contain malicious instructions intended to influence the generated summary.\n- Ingestion points: Commits authored by the git user (SKILL.md).\n- Boundary markers: None specified to differentiate data from instructions.\n- Capability inventory: Limited to text synthesis; no file-write or network tools are utilized in the workflow.\n- Sanitization: No sanitization of commit messages is mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 02:43 AM
Security Audit — agent-trust-hub — what-did-i-get-done