documentation-lookup
Pass
Audited by Gen Agent Trust Hub on Feb 22, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- Indirect Prompt Injection (LOW): The skill fetches documentation from external sources via
query-docsand instructs the agent to incorporate this content into its response. Ingestion points: Data returned by thequery-docstool based on external documentation repositories. Boundary markers: Absent. There are no instructions to delimit or ignore instructions within the fetched documentation. Capability inventory: The skill is primarily used for generating responses; no high-privilege commands like file-write or subprocess-exec are included. Sanitization: Absent. The skill does not specify any sanitization or validation of the fetched documentation before it is processed.
Audit Metadata