patent
Pass
Audited by Gen Agent Trust Hub on Jun 27, 2026
Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [PROMPT_INJECTION]: The skill processes user-supplied JSON files to generate reports consumed by the AI agent, creating a surface for indirect prompt injection.\n
- Ingestion points: The scripts
prior_art_search_planner.py,claim_landscape_mapper.py, andpatentability_scorer.pyingest data frominvention.json,patents.json, andpatentability.json.\n - Boundary markers: The generated reports do not include explicit delimiters to distinguish tool-generated data from potentially malicious embedded content.\n
- Capability inventory: The agent has capabilities to execute shell commands and interact with the filesystem.\n
- Sanitization: The scripts perform data extraction without specific sanitization of input strings before interpolation into the output.\n- [EXTERNAL_DOWNLOADS]: The skill documentation references official and well-known intellectual property resources, including the USPTO, EPO Espacenet, WIPO PatentScope, and Google Patents, which are trusted services for patent research.
Audit Metadata