source-management

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • Indirect Prompt Injection Surface: The skill is designed to manage searches across external platforms like chat, email, and cloud storage. This creates a vulnerability surface where malicious instructions embedded in documents or messages could influence the agent's behavior during search or summarization tasks.
  • Ingestion points: The skill guides the agent to process data from various MCP-connected sources including ~~chat, ~~email, ~~cloud storage, and ~~knowledge base (SKILL.md).
  • Boundary markers: There are no explicit instructions or delimiters defined within this skill to separate data from instructions or to direct the agent to ignore commands found within the retrieved content.
  • Capability inventory: The skill manages tool execution priorities for searching, reading, and querying records across enterprise search tools.
  • Sanitization: The skill does not define specific sanitization or filtering logic for the data ingested from these external sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 04:48 PM
Security Audit — agent-trust-hub — source-management