press-release-writer

Pass

Audited by Gen Agent Trust Hub on Mar 31, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted input from user-provided briefs and documents without explicit boundary markers or instructions to ignore embedded commands.
  • Ingestion points: User-provided briefs and documents accessed via Read, Glob, and Grep tools (SKILL.md, Step 1).
  • Boundary markers: Absent; there are no delimiters or instructions to treat user-provided content strictly as data.
  • Capability inventory: The skill has access to Write for file system modification and the Agent tool for invoking other capabilities (SKILL.md frontmatter).
  • Sanitization: Absent; the skill does not specify validation or filtering for ingested data.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 31, 2026, 01:37 PM