nature-energy

Pass

Audited by Gen Agent Trust Hub on Jul 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, such as prompt injection, credential exfiltration, or unauthorized command execution, were detected within the skill's instructions or metadata.
  • [INDIRECT_PROMPT_INJECTION]: The skill presents an inherent surface for indirect prompt injection by design, as it ingests and processes untrusted research manuscripts to provide venue-selection advice.
  • Ingestion points: External energy research manuscripts provided by users are processed in the agent context (SKILL.md).
  • Boundary markers: Absent; there are no explicit delimiters or instructions provided to the agent to disregard instructions embedded within the research text.
  • Capability inventory: The skill directs the agent to perform web searches ("Search the live site") and read internal configuration files ("read ../../resources/source-basis.md").
  • Sanitization: Absent; the skill does not specify any validation or filtering mechanisms for the input manuscript content.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 11, 2026, 11:58 AM
Security Audit — agent-trust-hub — nature-energy