the-cryosphere
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill contains purely instructional content related to scientific publishing. It does not include scripts, package dependencies, or network-enabled exfiltration patterns.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process untrusted manuscript data provided by the user to evaluate journal fit. This constitutes a standard surface for indirect prompt injection.
- Ingestion points: User-supplied manuscript text and research summaries are processed as primary input in SKILL.md.
- Boundary markers: Absent; the skill does not define specific delimiters or instructions to ignore potential commands embedded in the manuscript content.
- Capability inventory: The skill instructs the agent to read internal resource documentation and perform web searches for current journal guidelines.
- Sanitization: Absent; no explicit validation or filtering of user input is described.
Audit Metadata