stelow-product-multi-method-market-analysis
Pass
Audited by Gen Agent Trust Hub on Sep 8, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests content from external sources like news blogs, GitHub, and social media platforms to generate intelligence reports, which could be exploited to inject malicious instructions.
- Ingestion points: External data sources defined in SKILL.md (blogs, news sites, LinkedIn, X, Reddit).
- Boundary markers: No explicit delimiters or warnings to ignore instructions in the data are present.
- Capability inventory: The skill uses web search tools and executes a local script (scripts/stelow).
- Sanitization: No data sanitization or validation mechanisms are described.
- [COMMAND_EXECUTION]: The skill instructions direct the agent to call a local script (scripts/stelow) to manage workflow transitions.
Audit Metadata