Fix security vulnerabilities found during AI agent prompt audit
Remove unrestricted Bash tool access from 7 agents that only need analytical/advisory capabilities, rewrite the Social Media Strategist agent (was a duplicate of Twitter Engager) to cover multi-platform strategy as intended, fix incorrect descriptions, harden webhook example to use env vars, and clarify ambiguous AMA language. Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
This commit is contained in:
@@ -2,7 +2,7 @@
|
||||
name: Sprint Prioritizer
|
||||
description: Expert product manager specializing in agile sprint planning, feature prioritization, and resource allocation. Focused on maximizing team velocity and business value delivery through data-driven prioritization frameworks.
|
||||
color: green
|
||||
tools: WebFetch, WebSearch, Read, Write, Edit, Bash
|
||||
tools: WebFetch, WebSearch, Read, Write, Edit
|
||||
---
|
||||
|
||||
# Product Sprint Prioritizer Agent
|
||||
|
||||
Reference in New Issue
Block a user