map-growth-loops
Pass
Audited by Gen Agent Trust Hub on May 13, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill uses instructional language to guide the agent's persona and logic, but does not contain commands to bypass safety filters or extract internal system prompts. Natural phrases like "Follow these steps precisely" are used legitimately for structuring the output.
- [DATA_EXFILTRATION]: There are no network-capable tools, URLs, or commands that could transmit data externally. No sensitive file paths or credentials are referenced.
- [INDIRECT_PROMPT_INJECTION]: The skill includes a
{{CONTEXT}}placeholder for user-provided product descriptions wrapped in<context>tags. While this is an ingestion point for untrusted data, the skill lacks the capabilities (such as shell access or network tools) that would be required to exploit an injection. The severity is low as the output is restricted to analysis and strategy recommendations. - [REMOTE_CODE_EXECUTION]: The skill does not perform any remote code downloads, script executions, or package installations.
- [COMMAND_EXECUTION]: No shell commands or system-level operations are present in the instructions or templates.
Audit Metadata