mfg-supplier-scorecard
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists exclusively of markdown documentation and reference materials. No executable files, scripts (.py, .js, .sh), or platform-specific command injections were detected across any of the analyzed files.
- [INDIRECT_PROMPT_INJECTION]: The skill exhibits an ingestion surface for untrusted data as it processes supplier names and performance metrics provided by the user. However, the risk is classified as safe because the capability inventory reveals no dangerous tools such as shell execution, network requests, or file-writing operations. Boundary markers are established through the use of structured markdown tables and predefined scoring scales (1-5), which constrain the influence of potentially malicious input data.
Audit Metadata