error-analyzer
Fail
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: HIGHPROMPT_INJECTIONNO_CODE
Full Analysis
- [Indirect Prompt Injection] (HIGH): The skill facilitates the analysis of external codebases and provides the agent with tools to modify files, which is a high-risk configuration for indirect injection.
- Ingestion points: The skill utilizes
Read,Grep, andGlobtools to ingest React component code from the environment. - Boundary markers: There are no boundary markers or explicit instructions to ignore embedded commands within the analyzed code.
- Capability inventory: The
WriteandEdittools allow for permanent modification of the local filesystem, which could be subverted by instructions hidden in external data. - Sanitization: No sanitization or validation of the ingested code is performed.
- [No Code] (LOW): The skill contains no executable logic or scripts and relies entirely on natural language instructions and agent-provided tools.
Recommendations
- AI detected serious security threats
Audit Metadata