evaluate-existing-solutions
Pass
Audited by Gen Agent Trust Hub on Aug 9, 2026
Risk Level: SAFEDATA_EXFILTRATIONPROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill instructions are defensively oriented, explicitly warning against common security pitfalls such as executing untrusted code or piping remote scripts directly to a shell. It requires any proof-of-concept execution to occur within a least-privilege sandbox.
- [DATA_EXFILTRATION]: The skill includes explicit prohibitions against sending proprietary code, secrets, or personal data to external services during research activities.
- [PROMPT_INJECTION]: To mitigate risks of indirect prompt injection from external documentation, the skill instructs the agent to adhere to solution-neutral requirements and avoid letting candidate marketing redefine goals.
- [EXTERNAL_DOWNLOADS]: The skill references documentation and security standards from trusted organizations including NIST, the UK Government, Google (Abseil), and the Open Source Security Foundation (OpenSSF) to guide its evaluation methodology.
Audit Metadata