ca-discovery-response
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill consists entirely of Markdown instructions and legal drafting templates. It does not contain any executable scripts, shell commands, or source code.
- [SAFE]: Analysis across all threat categories (obfuscation, exfiltration, remote code execution) found no malicious patterns. The skill adheres to its stated purpose of assisting with legal documentation.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process user-provided legal documents (Requests for Production). While this represents a surface for indirect prompt injection, the skill does not possess high-risk capabilities—such as file system writes, network operations, or shell execution—that would allow for exploitation. The risk is considered negligible given the lack of dangerous tools.
Audit Metadata