fusion-issue-task-planning

Pass

Audited by Gen Agent Trust Hub on Mar 6, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill features an indirect prompt injection surface as it processes external, untrusted content from GitHub issues.\n- Ingestion points: The skill reads titles, bodies, and acceptance criteria from GitHub issues as described in Step 2 of the instructions.\n- Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the prompt instructions for handling external data.\n- Capability inventory: The skill can write local markdown files to the .tmp/ directory and delegate GitHub issue creation or repairs to the fusion-issue-authoring skill.\n- Sanitization: No sanitization, escaping, or validation of the ingested data is specified before it is used to generate tasks.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 6, 2026, 12:52 AM