skills/adryanmoldokkr32-pixel/bionicbot-giant-sovereign-skills/hf-supply-chain-algo/Gen Agent Trust Hub
hf-supply-chain-algo
Pass
Audited by Gen Agent Trust Hub on Apr 19, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [NO_CODE]: The skill consists entirely of natural language instructions and YAML metadata; no scripts or executable binaries are included.
- [PROMPT_INJECTION]: The skill contains an attack surface for indirect prompt injection where malicious instructions could be embedded in the data the agent is told to process.
- Ingestion points: The instructions require scraping external shipping, weather, and geopolitical data (SKILL.md).
- Boundary markers: None present; the skill does not instruct the agent to distinguish between data and instructions when processing scraped content.
- Capability inventory: The agent is empowered to automatically switch logistics providers, book cargo space, and execute financial transactions ('Dynamic Sourcing') based on external inputs.
- Sanitization: None present; the skill lacks any validation or filtering logic for the data ingested from external sources.
Audit Metadata