quick-research
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill exhibits a surface for indirect prompt injection attacks.
- Ingestion points: The skill uses the
WebFetchtool to retrieve content from arbitrary external websites (SKILL.md). - Boundary markers: There are no instructions to use delimiters or ignore embedded prompts within the fetched data before synthesis.
- Capability inventory: The skill has
Writetool access, which it uses to save results to the localworkspace/folder (SKILL.md). - Sanitization: The skill lacks explicit sanitization or validation logic for data retrieved from external sources.
Audit Metadata