{"schema_version":1,"workflow_uuid":"09f2e36d-59a1-5177-b67c-c4533169432c","workflow_title":"Superagent SDK — Guardrails Against Prompt Injection","page_url":"","raw_url":"https://tokrepo.com/raw/09f2e36d-59a1-5177-b67c-c4533169432c","metadata_url":"https://tokrepo.com/metadata/09f2e36d-59a1-5177-b67c-c4533169432c.json","install_plan_url":"https://api.tokrepo.com/api/v1/tokenboard/workflows/install-plan?uuid=09f2e36d-59a1-5177-b67c-c4533169432c&target=codex","agent_metadata":{"asset_kind":"prompt","target_tools":["claude_code"],"install_mode":"stage_only","entrypoint":"Asset","risk_profile":{"executes_code":false,"modifies_global_config":false,"requires_secrets":["SUPERAGENT_API_KEY"],"uses_absolute_paths":false,"network_access":false},"dependencies":{"npm":[],"pip":[],"brew":[],"system":[]},"content_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","verification":{"commands":[],"expected_files":["Asset"]}},"agent_fit":{"target":"codex","score":27,"status":"stage_only","policy":"stage_only","why":["target_tools does not include codex","asset_kind prompt","install_mode stage_only","policy stage_only","metadata target_tools does not include codex","install_mode is stage_only","risk_profile.requires_secrets is not empty","trust community"],"asset_kind":"prompt","install_mode":"stage_only"},"trust":{"author_trust_level":"community","verified_publisher":false,"asset_signed_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","signature_status":"hash_only","install_count":0,"report_count":0,"dangerous_capability_badges":["requires_secrets","stage_only"],"review_status":"unreviewed","signals":["author has published assets","content hash available"]},"provenance":{"owner_uuid":"8a9109f5-3180-11f1-9bc6-00163e2b0d79","owner_name":"Prompt Lab","source_url":"https://tokrepo.com/en/workflows/superagent-sdk-guardrails-against-prompt-injection","content_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","visibility":1,"created_at":"2026-05-13 12:22:20","updated_at":"2026-05-23 23:07:00"},"target_adapter":{"target":"codex","adapter":"skill-directory","root":"~/.codex/skills","entrypoint":"SKILL.md","manifest_path":"~/.codex/tokrepo/install-manifest.json","staging_root":"~/.codex/tokrepo/staged/09f2e36d-59a1-5177-b67c-c4533169432c","install_modes":["single","bundle","split","stage_only"],"activates_files":true},"install_plan":{"schema_version":2,"target":"codex","asset_uuid":"09f2e36d-59a1-5177-b67c-c4533169432c","asset_title":"Superagent SDK — Guardrails Against Prompt Injection","source_url":"https://tokrepo.com/en/workflows/superagent-sdk-guardrails-against-prompt-injection","install_mode":"stage_only","entrypoint":"Asset","preconditions":[{"type":"target_supported","status":"pass","message":"codex install target is supported"},{"type":"install_root","status":"pass","message":"~/.codex/skills for activated skills; ~/.codex/tokrepo/staged for staged assets"},{"type":"target_tool_metadata","status":"warn","message":"metadata target_tools does not include codex"},{"type":"content_hash","status":"pass","message":"asset metadata includes content_hash"},{"type":"trust_policy","status":"warn","message":"low trust publisher plus dangerous capability requires staging"},{"type":"policy_decision","status":"warn","message":"stage_only for 09f2e36d-59a1-5177-b67c-c4533169432c (stage_only)"}],"actions":[{"type":"stage_file","path":"~/.codex/tokrepo/staged/09f2e36d-59a1-5177-b67c-c4533169432c/Asset.md","source_name":"Asset","sha256":"f8969dd9a04e9ffdbf4a36875781258c070f26751bdd5b744814067145b59bf2","bytes":9339,"risk":{"executes_code":false,"modifies_global_config":false,"requires_secrets":["SUPERAGENT_API_KEY"],"uses_absolute_paths":false,"network_access":false},"if_exists":"overwrite"}],"policy_decision":{"decision":"stage_only","requires_confirmation":false,"reasons":["metadata target_tools does not include codex","install_mode is stage_only","risk_profile.requires_secrets is not empty","low trust publisher plus dangerous capability requires staging"]},"requires_confirmation":false,"rollback":[{"type":"remove_file","path":"~/.codex/tokrepo/staged/09f2e36d-59a1-5177-b67c-c4533169432c/Asset.md"}],"post_verify":[{"type":"file_sha256","path":"~/.codex/tokrepo/staged/09f2e36d-59a1-5177-b67c-c4533169432c/Asset.md","sha256":"f8969dd9a04e9ffdbf4a36875781258c070f26751bdd5b744814067145b59bf2"},{"type":"expected_file","path":"Asset.md"}],"metadata":{"asset_kind":"prompt","target_tools":["claude_code"],"install_mode":"stage_only","entrypoint":"Asset","risk_profile":{"executes_code":false,"modifies_global_config":false,"requires_secrets":["SUPERAGENT_API_KEY"],"uses_absolute_paths":false,"network_access":false},"dependencies":{"npm":[],"pip":[],"brew":[],"system":[]},"content_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","verification":{"commands":[],"expected_files":["Asset"]}},"agent_fit":{"target":"codex","score":27,"status":"stage_only","policy":"stage_only","why":["target_tools does not include codex","asset_kind prompt","install_mode stage_only","policy stage_only","metadata target_tools does not include codex","install_mode is stage_only","risk_profile.requires_secrets is not empty","trust community"],"asset_kind":"prompt","install_mode":"stage_only"},"trust":{"author_trust_level":"community","verified_publisher":false,"asset_signed_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","signature_status":"hash_only","install_count":0,"report_count":0,"dangerous_capability_badges":["requires_secrets","stage_only"],"review_status":"unreviewed","signals":["author has published assets","content hash available"]},"provenance":{"owner_uuid":"8a9109f5-3180-11f1-9bc6-00163e2b0d79","owner_name":"Prompt Lab","source_url":"https://tokrepo.com/en/workflows/superagent-sdk-guardrails-against-prompt-injection","content_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","visibility":1,"created_at":"2026-05-13 12:22:20","updated_at":"2026-05-23 23:07:00"},"target_adapter":{"target":"codex","adapter":"skill-directory","root":"~/.codex/skills","entrypoint":"SKILL.md","manifest_path":"~/.codex/tokrepo/install-manifest.json","staging_root":"~/.codex/tokrepo/staged/09f2e36d-59a1-5177-b67c-c4533169432c","install_modes":["single","bundle","split","stage_only"],"activates_files":true},"evidence_bundle":{"acceptance_gate":{"recommended_action":"stage_or_request_confirmation","rule":"Agents should only activate an asset after evidence_bundle.integrity, policy_compatibility, rollback, and post_verify have been inspected.","status":"caution"},"asset_title":"Superagent SDK — Guardrails Against Prompt Injection","asset_uuid":"09f2e36d-59a1-5177-b67c-c4533169432c","eval_evidence":["https://tokrepo.com/evals/install-safety.json","https://tokrepo.com/evals/trust-evidence-coverage.json","https://tokrepo.com/evals/handoff-quality.json"],"generated_at":"2026-05-23T15:07:01Z","integrity":{"content_hash":"6ff4d00be134c6ad64328eccc42f6984cb18c7c677b5238ee5b797773ab53ab7","declared_content_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","file_count":1,"hash_algorithm":"sha256","install_plan_hash":"8e424027b91c06ed51e103376ef188f6c444fad3789b8ff7f4c4abac2355ec06"},"policy_compatibility":{"permission_envelope":{"destructive":false,"executes_code":false,"file_count":1,"filesystem_write":["~/.codex/tokrepo/staged"],"global_config_write":false,"network":false,"requires_secrets":["SUPERAGENT_API_KEY"],"uses_absolute_paths":false},"policy_decision":{"decision":"stage_only","requires_confirmation":false,"reasons":["metadata target_tools does not include codex","install_mode is stage_only","risk_profile.requires_secrets is not empty","low trust publisher plus dangerous capability requires staging"]},"requires_confirmation":false,"target":"codex","trust_score_v2":{"recommended_action":"stage_or_request_confirmation","status":"caution","trust_score":60}},"provenance":{"asset_kind":"prompt","asset_title":"Superagent SDK — Guardrails Against Prompt Injection","asset_uuid":"09f2e36d-59a1-5177-b67c-c4533169432c","computed_bundle_hash":"6ff4d00be134c6ad64328eccc42f6984cb18c7c677b5238ee5b797773ab53ab7","content_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","created_at":"2026-05-13 12:22:20","generated_at":"2026-05-23T15:07:01Z","install_plan_hash":"8e424027b91c06ed51e103376ef188f6c444fad3789b8ff7f4c4abac2355ec06","owner_name":"Prompt Lab","owner_uuid":"8a9109f5-3180-11f1-9bc6-00163e2b0d79","parent_uuid":"","schema_version":2,"source":"tokrepo_asset","source_url":"https://tokrepo.com/en/workflows/superagent-sdk-guardrails-against-prompt-injection","updated_at":"2026-05-23 23:07:00","visibility":1},"sbom":{"asset_kind":"prompt","asset_title":"Superagent SDK — Guardrails Against Prompt Injection","asset_uuid":"09f2e36d-59a1-5177-b67c-c4533169432c","capability_flags":{"destructive":false,"executes_code":false,"modifies_global_config":false,"network_access":false,"requires_secrets":["SUPERAGENT_API_KEY"]},"content_hash":"6ff4d00be134c6ad64328eccc42f6984cb18c7c677b5238ee5b797773ab53ab7","dependencies":{"brew":[],"mcp":[],"npm":[],"pip":[],"system":[]},"files":[{"bytes":9339,"path":"~/.codex/tokrepo/staged/09f2e36d-59a1-5177-b67c-c4533169432c/Asset.md","role":"supporting_file","sha256":"f8969dd9a04e9ffdbf4a36875781258c070f26751bdd5b744814067145b59bf2","source_name":"Asset"}],"format":"SBOM-lite","install_mode":"stage_only","schema_version":1,"target":"codex"},"schema":"https://tokrepo.com/schemas/agent-evidence-bundle.schema.json","schema_version":1,"schemas":{"asset_verification":"https://tokrepo.com/schemas/asset-verification.schema.json","evidence_bundle":"https://tokrepo.com/schemas/agent-evidence-bundle.schema.json","install_plan":"https://tokrepo.com/schemas/install-plan.schema.json","provenance":"https://tokrepo.com/schemas/provenance.schema.json","sbom":"https://tokrepo.com/schemas/agent-evidence-bundle.schema.json#/properties/sbom"},"signature_evidence":{"content_hash":"6ff4d00be134c6ad64328eccc42f6984cb18c7c677b5238ee5b797773ab53ab7","hash_algorithm":"sha256","install_plan_hash":"8e424027b91c06ed51e103376ef188f6c444fad3789b8ff7f4c4abac2355ec06","schema_version":1,"signed_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","status":"hash_only","verification_notes":["hash_only evidence proves content integrity but not publisher identity unless an external signature verifies it"]},"source_url":"https://tokrepo.com/en/workflows/superagent-sdk-guardrails-against-prompt-injection","target":"codex"},"sbom":{"asset_kind":"prompt","asset_title":"Superagent SDK — Guardrails Against Prompt Injection","asset_uuid":"09f2e36d-59a1-5177-b67c-c4533169432c","capability_flags":{"destructive":false,"executes_code":false,"modifies_global_config":false,"network_access":false,"requires_secrets":["SUPERAGENT_API_KEY"]},"content_hash":"6ff4d00be134c6ad64328eccc42f6984cb18c7c677b5238ee5b797773ab53ab7","dependencies":{"brew":[],"mcp":[],"npm":[],"pip":[],"system":[]},"files":[{"bytes":9339,"path":"~/.codex/tokrepo/staged/09f2e36d-59a1-5177-b67c-c4533169432c/Asset.md","role":"supporting_file","sha256":"f8969dd9a04e9ffdbf4a36875781258c070f26751bdd5b744814067145b59bf2","source_name":"Asset"}],"format":"SBOM-lite","install_mode":"stage_only","schema_version":1,"target":"codex"},"signature_evidence":{"content_hash":"6ff4d00be134c6ad64328eccc42f6984cb18c7c677b5238ee5b797773ab53ab7","hash_algorithm":"sha256","install_plan_hash":"8e424027b91c06ed51e103376ef188f6c444fad3789b8ff7f4c4abac2355ec06","schema_version":1,"signed_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","status":"hash_only","verification_notes":["hash_only evidence proves content integrity but not publisher identity unless an external signature verifies it"]},"provenance_v2":{"asset_kind":"prompt","asset_title":"Superagent SDK — Guardrails Against Prompt Injection","asset_uuid":"09f2e36d-59a1-5177-b67c-c4533169432c","computed_bundle_hash":"6ff4d00be134c6ad64328eccc42f6984cb18c7c677b5238ee5b797773ab53ab7","content_hash":"5516d6a259cad1155d97494a3614d8777ed8cc035b4f690f7510e4446a40fc05","created_at":"2026-05-13 12:22:20","generated_at":"2026-05-23T15:07:01Z","install_plan_hash":"8e424027b91c06ed51e103376ef188f6c444fad3789b8ff7f4c4abac2355ec06","owner_name":"Prompt Lab","owner_uuid":"8a9109f5-3180-11f1-9bc6-00163e2b0d79","parent_uuid":"","schema_version":2,"source":"tokrepo_asset","source_url":"https://tokrepo.com/en/workflows/superagent-sdk-guardrails-against-prompt-injection","updated_at":"2026-05-23 23:07:00","visibility":1},"transitive_dependencies":null}}