blueprint-discovery

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • Overall Status (SAFE): The skill was analyzed across all 10 threat categories, including prompt injection, data exfiltration, and remote code execution. No malicious patterns or security risks were identified.
  • Indirect Prompt Injection (SAFE): Analysis of the input surface confirms it is not exploitable for malicious purposes. 1. Ingestion points: feature_description input field in the Input section. 2. Boundary markers: Absent. 3. Capability inventory: No subprocess calls, exec/eval, file-write, or network operations are present in the skill content. 4. Sanitization: Absent.
  • No Code (SAFE): This skill consists entirely of markdown-based instructions and logic without any associated scripts or executables, significantly reducing its attack surface.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:33 PM