editor
Pass
Audited by Gen Agent Trust Hub on Feb 21, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- PROMPT_INJECTION (LOW): Vulnerable to indirect prompt injection via document ingestion (Workflow Step 1). It lacks boundary markers and explicit instructions to ignore embedded commands. Capabilities include file-writing and tool usage (e.g. generate-image). No sanitization is performed on input.
- NO_CODE (SAFE): The skill consists entirely of markdown instructions and contains no executable scripts or binaries, reducing the risk of direct code-based attacks.
Audit Metadata