struggle
Pass
Audited by Gen Agent Trust Hub on Aug 25, 2026
Risk Level: SAFE
Full Analysis
- [DATA_EXPOSURE]: The skill implements protective constraints that explicitly forbid network activity and external service calls, preventing the exfiltration of the collected behavior logs.\n- [INDIRECT_PROMPT_INJECTION]: The skill operates by ingesting untrusted user input from the conversation history to generate its struggle observations.\n
- Ingestion points: User messages and recent context during active tracking (SKILL.md).\n
- Boundary markers: Absent; there are no delimiters provided to the model to isolate user content from the analysis instructions.\n
- Capability inventory: The skill possesses the capability to write and append data to a local file (struggle-log.json).\n
- Sanitization: The model is directed to summarize patterns into non-sensitive observations, providing an instructional filter but no programmatic escaping or validation of the input data.
Audit Metadata