aiconfig-snippets
Pass
Audited by Gen Agent Trust Hub on May 7, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill manages external prompt content from the LaunchDarkly platform, creating a surface for indirect prompt injection.
- Ingestion points: Data enters the agent context through tools like
list-prompt-snippetsandget-prompt-snippetused in SKILL.md. - Boundary markers: The instructions do not explicitly define delimiters for external content.
- Capability inventory: The skill can modify snippets and configurations using
update-prompt-snippetandupdate-ai-config-variation. - Sanitization: No explicit sanitization or validation of the remote prompt text is described in the workflow.
Audit Metadata