hf-supply-chain-algo

Pass

Audited by Gen Agent Trust Hub on Apr 19, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [NO_CODE]: The skill consists entirely of natural language instructions and YAML metadata; no scripts or executable binaries are included.
  • [PROMPT_INJECTION]: The skill contains an attack surface for indirect prompt injection where malicious instructions could be embedded in the data the agent is told to process.
  • Ingestion points: The instructions require scraping external shipping, weather, and geopolitical data (SKILL.md).
  • Boundary markers: None present; the skill does not instruct the agent to distinguish between data and instructions when processing scraped content.
  • Capability inventory: The agent is empowered to automatically switch logistics providers, book cargo space, and execute financial transactions ('Dynamic Sourcing') based on external inputs.
  • Sanitization: None present; the skill lacks any validation or filtering logic for the data ingested from external sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 19, 2026, 05:39 AM
Security Audit — agent-trust-hub — hf-supply-chain-algo