biz-pricing-strategy
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No patterns of prompt injection, role-play overrides, or instructions to bypass safety guidelines were detected. The skill uses natural instructional language to guide the agent through pricing frameworks.
- [DATA_EXPOSURE_AND_EXFILTRATION]: No sensitive file paths, hardcoded credentials, or network operations (such as curl, wget, or fetch) were found. The skill does not access or transmit any user data or system secrets.
- [OBFUSCATION]: The content is clear and uses standard Markdown and YAML formatting. No Base64, zero-width characters, homoglyphs, or other hidden encoding techniques were detected.
- [UNVERIFIABLE_DEPENDENCIES_AND_REMOTE_CODE_EXECUTION]: The skill does not reference any external packages, dependencies, or remote scripts. It contains no implementation code in Python, Node.js, or shell script.
- [PRIVILEGE_ESCALATION]: No commands related to privilege escalation, such as sudo, chmod, or system configuration modifications, are present.
- [PERSISTENCE]: No mechanisms for maintaining access, such as modifying startup scripts, shell profiles, or cron jobs, were detected.
- [INDIRECT_PROMPT_INJECTION]: While the skill processes user input regarding business scenarios, it lacks any functional capabilities (scripts, tools, or file system access) that could be exploited via malicious data ingestion. The risk is effectively zero due to the absence of executable tools.
- [DYNAMIC_EXECUTION]: There is no evidence of runtime code generation, compilation, or dynamic loading of executable content.
- [DYNAMIC_CONTEXT_INJECTION]: The skill does not utilize dynamic context injection syntax (
!command) to execute shell commands during skill loading.
Audit Metadata