auto-documentation
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [Indirect Prompt Injection] (LOW): The skill ingests data from local .tf files, creating a surface for indirect prompt injection if the source code contains malicious instructions. 1. Ingestion points: Local filesystem files (.tf) accessed via find and grep. 2. Boundary markers: Absent. 3. Capability inventory: Local file reading and writing. 4. Sanitization: No sanitization or validation of input data before processing into documentation templates.
Audit Metadata