cash-flow-snapshot

Pass

Audited by Gen Agent Trust Hub on May 13, 2026

Risk Level: SAFE
Full Analysis
  • Financial Data Processing: The skill is designed to access sensitive financial information from sources like QuickBooks, PayPal, and Stripe to generate cash flow forecasts. This behavior is consistent with its stated purpose and relies on established platform connectors.
  • Indirect Prompt Injection Surface: The skill ingests data from external sources, including user-uploaded CSV files and API responses. While this represents a potential surface for indirect prompt injection—where instructions could be hidden in transaction descriptions—the skill's logic is focused on mathematical aggregation and structured reporting, which reduces the likelihood of such instructions being executed as commands.
  • Output Generation: The skill generates downloadable XLSX workbooks using a platform-specific tool. This facilitates the delivery of complex financial data in a standard, auditable format for the user.
Audit Metadata
Risk Level
SAFE
Analyzed
May 13, 2026, 05:32 PM