stelow-product-multi-method-market-analysis

Pass

Audited by Gen Agent Trust Hub on Sep 8, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests content from external sources like news blogs, GitHub, and social media platforms to generate intelligence reports, which could be exploited to inject malicious instructions.
  • Ingestion points: External data sources defined in SKILL.md (blogs, news sites, LinkedIn, X, Reddit).
  • Boundary markers: No explicit delimiters or warnings to ignore instructions in the data are present.
  • Capability inventory: The skill uses web search tools and executes a local script (scripts/stelow).
  • Sanitization: No data sanitization or validation mechanisms are described.
  • [COMMAND_EXECUTION]: The skill instructions direct the agent to call a local script (scripts/stelow) to manage workflow transitions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 8, 2026, 03:00 AM
Security Audit — agent-trust-hub — stelow-product-multi-method-market-analysis