nature-astronomy

Pass

Audited by Gen Agent Trust Hub on Sep 24, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze untrusted external data, making it susceptible to indirect prompt injection if the inputs contain adversarial instructions.
  • Ingestion points: The skill processes user-submitted astronomical manuscripts and external data retrieved from Springer Nature/Nature Astronomy websites during the "Official-submission checklist" phase.
  • Boundary markers: The skill does not provide specific delimiters or instructions to the agent to treat external manuscript text as data rather than instructions.
  • Capability inventory: The skill requires file-read access (to ../../resources/source-basis.md and ../../resources/official-source-map.md) and network access via search tools to verify live journal policies.
  • Sanitization: There are no explicit instructions for the agent to sanitize, filter, or validate the content of the manuscripts or web data before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 24, 2026, 11:33 AM
Security Audit — agent-trust-hub — nature-astronomy