solublempnn
Pass
Audited by Gen Agent Trust Hub on Sep 8, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill describes a workflow that ingests untrusted protein data and incorporates it into execution-related tasks (checking paths and saving commands) without specifying sanitization or boundary markers. This creates a potential surface for indirect prompt injection.
- Ingestion points: User-provided protein structures, sequences, and expression constraints (SKILL.md, Step 1).
- Boundary markers: Absent; no instructions are provided to use delimiters or warnings for processed data.
- Capability inventory: Verification of execution paths and saving/running of design commands (SKILL.md, Step 2, 3).
- Sanitization: Absent; no mention of validating or escaping user input.
- [NO_CODE]: The skill consists solely of markdown instructions and metadata, with no accompanying scripts, executables, or tool definitions.
Audit Metadata