NYC
skills/getsentry/skills/agents-md/Gen Agent Trust Hub

agents-md

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • Indirect Prompt Injection (LOW): The skill is designed to discover and read the frontmatter of other local SKILL.md files to generate documentation, creating a surface for untrusted local data to influence the agent. * Ingestion points: File discovery and reading of frontmatter from .claude/skills and plugins subdirectories. * Boundary markers: Absent; there are no instructions for the agent to use delimiters or ignore instructions within the summarized content. * Capability inventory: File system discovery (find, ls), symlink creation (ln -s), and markdown file generation. * Sanitization: Absent; the skill summarizes found metadata without validation.
  • Command Execution (SAFE): Employs standard shell commands (find, ls, ln) to locate and link local documentation files. These actions are restricted to the local filesystem and project-specific paths, posing no significant security risk in this context.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 04:53 PM