sprint-retrospective
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFENO_CODE
Full Analysis
- Prompt Injection (SAFE): No instructions found that attempt to override system safety guidelines or extract system prompts. The instructions are strictly focused on agile retrospective methodologies.- Data Exposure & Exfiltration (SAFE): No hardcoded credentials, sensitive file paths, or network operations (curl, wget) were detected.- Obfuscation (SAFE): No evidence of Base64 encoding, zero-width characters, homoglyphs, or other obfuscation techniques intended to hide malicious content.- Unverifiable Dependencies & Remote Code Execution (SAFE): The skill does not include any package installation commands or remote script execution patterns. All references are to documentation and literature.- Privilege Escalation & Persistence (SAFE): No commands related to system privilege modification (sudo, chmod) or persistent access (cron, startup scripts) were found.- Indirect Prompt Injection (SAFE): While the skill processes user-provided team feedback, it lacks any dangerous capabilities (network, file-write, or shell execution) that could be exploited via malicious input.- Metadata & Reputation (SAFE): Metadata accurately reflects the skill's purpose. External links point to legitimate educational resources (Retromat and Amazon).
Audit Metadata