harness
Pass
Audited by Gen Agent Trust Hub on Apr 18, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [SAFE]: The harness skill provides a structural methodology for organizing project documentation to prevent context bloat and maintain architectural awareness.
- [PROMPT_INJECTION]: The skill features an indirect prompt injection surface inherent to tools that analyze project files.
- Ingestion points:
commands/audit.mdandcommands/init.mdread project files such asCLAUDE.mdand.cursorrules. - Boundary markers: Absent; external data is processed without explicit delimiters.
- Capability inventory: None; the skill does not implement network communication, arbitrary command execution, or file writing.
- Sanitization: Absent; the skill does not validate or sanitize the content of the project files it reads.
- [SAFE]: All external links are to trusted domains, and no suspicious dependencies or obfuscated code were found.
Audit Metadata