speckit-check

Pass

Audited by Gen Agent Trust Hub on Apr 6, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes the specify check command to audit the local development environment and detect the presence of required tools like Git and various AI agent interfaces.\n- [PROMPT_INJECTION]: The skill processes and interprets output from the specify check command to provide user recommendations. This creates a surface for indirect prompt injection (Category 8c: Tool output poisoning), where the agent's logic is influenced by data from a local process.\n
  • Ingestion points: Command output from specify check referenced in the workflow of SKILL.md.\n
  • Boundary markers: None present in the instructions.\n
  • Capability inventory: Shell command execution via the agent's toolset.\n
  • Sanitization: None; the skill relies on the agent to interpret raw string output.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 6, 2026, 10:48 AM