press-release-writer
Pass
Audited by Gen Agent Trust Hub on Mar 31, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted input from user-provided briefs and documents without explicit boundary markers or instructions to ignore embedded commands.
- Ingestion points: User-provided briefs and documents accessed via
Read,Glob, andGreptools (SKILL.md, Step 1). - Boundary markers: Absent; there are no delimiters or instructions to treat user-provided content strictly as data.
- Capability inventory: The skill has access to
Writefor file system modification and theAgenttool for invoking other capabilities (SKILL.md frontmatter). - Sanitization: Absent; the skill does not specify validation or filtering for ingested data.
Audit Metadata