customer-research

Pass

Audited by Gen Agent Trust Hub on Apr 20, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The analyzed skill consists strictly of documentation and instructions in Markdown format. It does not contain any functional code, shell scripts, or executable files.- [NO_CODE]: The skill's functionality is limited to guiding the AI agent's reasoning process for research tasks and does not automate any file system or network operations.- [PROMPT_INJECTION]: The skill defines a process for ingesting and analyzing untrusted external data from sources like Reddit, G2, and customer transcripts. While this creates a surface for indirect prompt injection, it is managed as part of the intended research process. Ingestion points: External sources identified in SKILL.md (Reddit, G2, forums) and local research assets (transcripts, surveys). Boundary markers: None specified in the instructions for isolating external content from system instructions. Capability inventory: The skill focuses on analysis and report generation and does not explicitly invoke dangerous tools like shell execution. Sanitization: No specific sanitization or filtering steps are provided for the ingested data.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 20, 2026, 12:05 PM
Security Audit — agent-trust-hub — customer-research