documentation-generation-doc-generate
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- [Indirect Prompt Injection] (SAFE): The skill processes untrusted code and comments. Ingestion points: code, configs, and comments in
SKILL.md. Boundary markers: Absent. Capability inventory: generates docs and tool configs. Sanitization: explicit safety instruction to avoid exposing secrets. This is the primary function of the skill and is handled safely. - [Data Exposure & Exfiltration] (SAFE): The skill instructions mention extracting information from code but do not include any network operations or hardcoded credentials. It explicitly warns against exposing sensitive data.
Audit Metadata