asb-raise-prices

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes untrusted content from external URLs (such as pricing pages and homepages) and results from search tools. This creates an attack surface for indirect prompt injection, where malicious instructions hidden in external data could attempt to manipulate the agent's output or actions.
  • Ingestion points: Data from external URLs provided by the user and content retrieved via search tools (SKILL.md).
  • Boundary markers: No specific delimiters or instructions to ignore embedded commands in external data are defined.
  • Capability inventory: The skill has the ability to write to the local file system (RAISE-PRICES.md) and invoke search tools.
  • Sanitization: No explicit filtering or escaping of external content is mentioned before it is processed by the agent.
  • [PROMPT_INJECTION]: The skill contains a strong directive to only drive toward higher prices and avoid debating the decision to raise them. This acts as a behavioral constraint that overrides the agent's neutral reasoning for the duration of the skill's execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 03:51 AM
Security Audit — agent-trust-hub — asb-raise-prices