fusion-issue-task-planning
Pass
Audited by Gen Agent Trust Hub on Mar 6, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill features an indirect prompt injection surface as it processes external, untrusted content from GitHub issues.\n- Ingestion points: The skill reads titles, bodies, and acceptance criteria from GitHub issues as described in Step 2 of the instructions.\n- Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the prompt instructions for handling external data.\n- Capability inventory: The skill can write local markdown files to the
.tmp/directory and delegate GitHub issue creation or repairs to thefusion-issue-authoringskill.\n- Sanitization: No sanitization, escaping, or validation of the ingested data is specified before it is used to generate tasks.
Audit Metadata