execute-subtask-direct

Pass

Audited by Gen Agent Trust Hub on Apr 8, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes Git commands (git add, git commit, git push) and a custom task management CLI named agkan. These are intended behaviors for its purpose of implementation and task status tracking.
  • [PROMPT_INJECTION]: The skill presents an attack surface for indirect prompt injection because it processes external task requirements. * Ingestion points: Task requirements from the agkan system. * Boundary markers: Absent; no delimiters or instructions to ignore embedded commands. * Capability inventory: File system modification, Git remote operations, and CLI interaction. * Sanitization: No sanitization of task data is mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 8, 2026, 06:43 AM