form-cro

Pass

Audited by Gen Agent Trust Hub on Apr 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, data exfiltration, or remote code execution detected. The skill's instructions are purely informational and focused on business logic for improving form completion rates.
  • [SAFE]: The instruction to check for a local context file (product-marketing-context.md) is a standard method for the agent to gather relevant project information and does not target sensitive system or credential files.
  • [SAFE]: The skill processes user-provided descriptions of web forms. While this is a surface for indirect prompt injection, the skill lacks any capabilities (such as code execution, network operations, or file system writes) that could be exploited through such an injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 26, 2026, 10:15 PM
Security Audit — agent-trust-hub — form-cro