alterlab-pra-market-research

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill defines a standard persona and analytical workflow for a market research analyst. No malicious instructions, obfuscation, or persistence mechanisms were found.- [DATA_EXFILTRATION]: The skill instructions specify reading project files and internal sales data for context. However, it lacks any defined capabilities or network commands to exfiltrate this data. It only performs web searches for research and writes deliverables to the local project directory.- [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection due to its requirement to ingest untrusted data from the web.
  • Ingestion points: Web search results, industry reports, and trade press (Step 2 in SKILL.md).
  • Boundary markers: Absent; there are no specific instructions to ignore embedded directives in external content.
  • Capability inventory: Web searching and local file system write access.
  • Sanitization: Absent; the skill is instructed to treat external findings as factual evidence for analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 11:44 PM
Security Audit — agent-trust-hub — alterlab-pra-market-research