subagent-driven-development
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- Indirect Prompt Injection (SAFE): The skill processes external implementation plans, creating a potential ingestion surface for untrusted data. However, the architecture includes strong mitigations such as mandatory two-stage reviews and explicit instructions for reviewers to verify code independently rather than trusting implementer reports. * Ingestion points:
implementer-prompt.mdandspec-reviewer-prompt.md. * Boundary markers: Employs Markdown headers as structural delimiters. * Capability inventory: Subagents are granted code-writing and testing capabilities. * Sanitization: Risks are mitigated through cross-verification by independent reviewer agents.
Audit Metadata