sun-yuchen-perspective
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill utilizes a 'Justin Sun-style' research workflow that mandates the use of web search tools to gather real-time market data, token metrics, and news. This introduces an attack surface where malicious instructions embedded in external web content could influence the agent's behavior.
- Ingestion points: Data enters the context via the
WebSearchtool and user-provided queries regarding marketing strategies or PR crises. - Boundary markers: The instructions lack specific delimiters or 'ignore' directives to prevent the agent from obeying instructions found within the search results.
- Capability inventory: The skill has access to the
WebSearchtool and generates responses using a strict persona. - Sanitization: There is no evidence of filtering or sanitizing content retrieved from external URLs before it is processed by the persona logic.
Audit Metadata