Audit AI trust boundaries, wrapper use, strict outputs, and apply-time controls.
Scanned 9/23/2026
npx -y skills add startmeupai/swe-agents --skill ai-injection-audit --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of Ai Injection Audit?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/startmeupai-ai-injection-audit)More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.
---
name: ai-injection-audit
description: Audit AI trust boundaries, wrapper use, strict outputs, and apply-time controls.
---
# AI Injection Audit
## Trigger Conditions
Use for AI feature changes or a security pass over model input and output handling.
## Required Inputs
- Model call inventory, central wrapper, trust model, schemas, output filters, and write paths.
## Workflow
1. Find direct provider calls that bypass the approved wrapper.
2. Trace untrusted user, upload, fetched, and tool content into prompts.
3. Confirm structural separation from developer/system instructions.
4. Require strict structured-output validation before application use.
5. Trace model-proposed writes through deterministic validation and re-authorization.
6. Check logging and metrics for prompt or secret leakage.
## Deterministic Checks
- Provider-import scan, wrapper-call inventory, schema strictness, and apply-path tests.
## Safety and Permission Boundaries
- Never execute untrusted model output or include sensitive prompt content in the report.
## Required Evidence
- Confirmed source path, attacker-controlled input, boundary failure, impact, and limitation.
## Completion Condition
- Every in-scope model call and write path is assessed or explicitly unverified.
## Example
`Audit ExampleApp's AI-assisted settings proposal flow.`
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!