grad-real-options
Pass
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill instructions do not contain any patterns attempting to override agent behavior, bypass safety filters, or extract system prompts. The language used is purely instructional regarding financial theory.
- [DATA_EXFILTRATION]: No network operations (curl, wget, fetch) or access to sensitive file paths (e.g., credentials, SSH keys) were detected. The skill only processes project-related financial parameters provided by the user.
- [REMOTE_CODE_EXECUTION]: There are no patterns involving the download or execution of external scripts or packages. The methodology is manual and descriptive.
- [OBFUSCATION]: Analysis of the markdown content and examples found no Base64 encoding, zero-width characters, homoglyphs, or other hidden content techniques.
- [DYNAMIC_CONTEXT_INJECTION]: The skill does not utilize load-time shell command execution placeholders. All content is static text and mathematical formulas.
- [INDIRECT_PROMPT_INJECTION]: While the skill is designed to ingest user-supplied project data for analysis, it lacks active capabilities (such as file-writing or network access) that could be exploited through malicious data input.
Audit Metadata