reviewing-regulatory-prior-art-survey
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines a highly structured process for evaluating regulatory compliance documents. Its functions are purely analytical and instructional, and it does not request dangerous permissions.
- [INDIRECT_PROMPT_INJECTION]: The skill demonstrates advanced security awareness regarding indirect prompt injection. Condition C21 specifically prohibits following instructions found within fetched content, and the provided fixtures demonstrate how to sanitize files such as 'AGENTS.md' or marketing interstitials that might contain agent-directed commands.
- [COMMAND_EXECUTION]: The skill mentions a Python validation script (
validate_regulatory_prior_art.py), but the instructions clarify that this is a deterministic step that occurs before the agent's involvement. The agent is not instructed to execute any shell commands. - [EXTERNAL_DOWNLOADS]: The URLs identified in the fixture files refer to established regulatory and legal repositories (e.g., EUR-Lex, eCFR, Federal Register). These are legitimate professional references and do not represent a security threat.
Audit Metadata