business-investment-advisor

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill consists entirely of instructional markdown and decision-making frameworks. No malicious code, command execution, or remote downloads were detected.
  • [INDIRECT_PROMPT_INJECTION]: The skill instructions include a directive to read company-context.md for project background. While this is an ingestion point for potentially untrusted data, the skill lacks any capabilities to execute commands or exfiltrate data.
  • Ingestion points: company-context.md (referenced in SKILL.md)
  • Boundary markers: None specified
  • Capability inventory: No tools, shell commands, or network operations are used or requested
  • Sanitization: None specified
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 02:42 PM
Security Audit — agent-trust-hub — business-investment-advisor