doc-review
Pass
Audited by Gen Agent Trust Hub on Feb 28, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: Indirect Prompt Injection Surface
- Ingestion points: The skill reads file contents based on user-provided paths or glob patterns specified in the
<file_path>argument. - Boundary markers: The sub-agent prompt does not utilize clear delimiters or specific instructions to ignore potential commands embedded within the reviewed documents.
- Capability inventory: The sub-agent has the capability to write review output to the
docs/reviews/directory. - Sanitization: No content filtering or sanitization is applied to the document data before it is passed to the sub-agent for analysis.
Audit Metadata