people-analytics
Pass
Audited by Gen Agent Trust Hub on Oct 2, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze external workforce data from CSV files, which presents a potential surface for indirect prompt injection.
- Ingestion points: The scripts
scripts/attrition_predictor.py,scripts/headcount_planner.py, andscripts/survey_analyzer.pyread data from user-supplied CSV files (employees.csv,workforce.csv,survey_results.csv). - Boundary markers: The instructions lack explicit boundary markers or delimiters to protect the agent from interpreting data content as instructions during the analysis workflow.
- Capability inventory: The skill's capabilities are restricted to local data processing and standard output. There are no network operations, file system modifications, or shell command executions within the provided scripts.
- Sanitization: The scripts implement basic data sanitization through helper functions like
safe_float,safe_int, andparse_scorewhich validate and cast input values to expected numeric types. - [DATA_EXPOSURE]: The skill handles sensitive HR data, including compensation, performance ratings, and engagement scores.
- The
scripts/survey_analyzer.pyscript implements a privacy safeguard by enforcing a minimum segment size (MIN_SEGMENT_SIZE = 5) to ensure anonymity in group reporting. - The documentation includes a 'Data Governance Checklist' reminding users to apply data minimization and anonymization before processing.
Audit Metadata