alterlab-nmc-data-journalist

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection due to its core functionality of processing external data.
  • Ingestion points: The agent is instructed to "search the web for public datasets" and "read project files for context" (SKILL.md, Workflow section).
  • Boundary markers: There are no explicit instructions or delimiters provided to help the agent distinguish between data to be analyzed and potential instructions embedded within that data.
  • Capability inventory: The agent has the ability to search the web, read files, and write findings to new markdown files such as {project}-data-analysis.md.
  • Sanitization: No data sanitization, filtering, or validation processes are mentioned for handling the ingested external content.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 11:44 PM
Security Audit — agent-trust-hub — alterlab-nmc-data-journalist