roadmap-planning
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill is a process-oriented workflow that orchestrates internal component skills through relative path references. It does not perform any automated command execution, network communication, or sensitive data manipulation.
- [INDIRECT_PROMPT_INJECTION]: The skill ingests user-provided context and feature lists to generate roadmap templates. This is an inherent part of the skill's primary function and does not introduce actionable risks given the lack of executable capabilities. 1. Ingestion points: Strategic context, business goals, and candidate initiatives supplied during invocation. 2. Boundary markers: None explicitly defined in the instructions. 3. Capability inventory: The skill is limited to text generation and does not have access to subprocesses, network tools, or file-writing capabilities. 4. Sanitization: Standard LLM-based processing is used without specific sanitization filters.
Audit Metadata