grey-haven-documentation-alignment

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • SAFE (SAFE): No malicious behavior, obfuscation, or unauthorized network operations were detected. The skill is composed of static documentation, templates, and checklists.
  • Indirect Prompt Injection (LOW): The skill possesses a vulnerability surface for indirect prompt injection as it is designed to ingest untrusted data from source code and markdown documentation. 1. Ingestion points: The Read, Grep, and Glob tools are used to load external file content into the agent context. 2. Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the provided skill methodology. 3. Capability inventory: The skill is restricted to file discovery and documentation updates via Read, Grep, Glob, and TodoWrite, lacking dangerous execution or network capabilities. 4. Sanitization: No sanitization of ingested content is described before the agent processes it for alignment scoring.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:37 PM