umbraco-property-action

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE] (SAFE): The skill follows standard Umbraco CMS development patterns. No hardcoded credentials, malicious persistence mechanisms, or unauthorized file access patterns were detected.
  • [Indirect Prompt Injection] (SAFE): The skill utilizes WebFetch to ingest external documentation from docs.umbraco.com. 1. Ingestion points: Documentation URLs listed in the SKILL.md documentation section. 2. Boundary markers: Absent; the agent is directed to directly apply fetched content to its workflow. 3. Capability inventory: The agent is granted Write and Edit permissions to create system files based on the fetched content. 4. Sanitization: No sanitization or verification steps are defined for the fetched external content. As this behavior is for the primary purpose of technical documentation retrieval, it is classified as safe.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 05:56 PM