customer-research
Pass
Audited by Gen Agent Trust Hub on Apr 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows security best practices by focusing exclusively on data extraction, clustering, and persona generation without executing shell commands or requesting excessive permissions.
- [PROMPT_INJECTION]: The skill presents a surface for indirect prompt injection due to its core function of processing untrusted external content.
- Ingestion points: The skill is designed to ingest and analyze data from various untrusted sources including customer transcripts, support tickets, and public platforms such as Reddit, G2, and Hacker News as detailed in
SKILL.mdandreferences/source-guides.md. - Boundary markers: The instructions do not define specific delimiters or instructions to ignore embedded commands within the processed data.
- Capability inventory: The skill is limited to text analysis and documentation; it does not explicitly invoke external tools or perform network operations within its own logic.
- Sanitization: No sanitization or validation logic for external content is included in the instructions. This finding is considered low risk as it is intrinsic to the skill's purpose and lacks dangerous execution capabilities.
Audit Metadata