incident-postmortem-template

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • Prompt Injection (SAFE): No patterns of instruction override, jailbreaking, or system prompt extraction were found.
  • Data Exposure & Exfiltration (SAFE): The skill does not contain hardcoded credentials, sensitive file paths, or network requests to external domains.
  • Obfuscation (SAFE): No encoded content, zero-width characters, or homoglyphs were detected in the text.
  • Unverifiable Dependencies (SAFE): The skill does not reference external package managers (npm, pip) or remote script downloads.
  • Command Execution (SAFE): While the skill requests 'Bash' and 'Grep' tools in its metadata, it contains no actual command-line strings or script execution logic within the file itself.
  • Indirect Prompt Injection (LOW): The skill is designed to process incident data which may come from untrusted sources. While this presents a theoretical surface for injection, no malicious exploitation patterns were found in the static template definition.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:40 PM