allium-investigation
Pass
Audited by Gen Agent Trust Hub on Aug 21, 2026
Risk Level: SAFE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from external sources via
get_query_run_resultsandget_terminal_resultsinSKILL.md. Boundary markers are absent. Capabilities include SQL execution viarun_sql_query. Sanitization is absent, relying instead on manual validation instructions to mitigate potential data poisoning. - [DYNAMIC_EXECUTION]: The skill generates SQL queries for the
run_sql_querytool based on user input, which is the core analytical function of the skill. - [SAFE]: The skill uses expected vendor tools and follows best practices for data reproducibility. No external downloads from untrusted sources or malicious persistence mechanisms were identified.
Audit Metadata