the-cryosphere

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill contains purely instructional content related to scientific publishing. It does not include scripts, package dependencies, or network-enabled exfiltration patterns.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process untrusted manuscript data provided by the user to evaluate journal fit. This constitutes a standard surface for indirect prompt injection.
  • Ingestion points: User-supplied manuscript text and research summaries are processed as primary input in SKILL.md.
  • Boundary markers: Absent; the skill does not define specific delimiters or instructions to ignore potential commands embedded in the manuscript content.
  • Capability inventory: The skill instructs the agent to read internal resource documentation and perform web searches for current journal guidelines.
  • Sanitization: Absent; no explicit validation or filtering of user input is described.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 02:13 PM
Security Audit — agent-trust-hub — the-cryosphere