chinese-legal-docket-watcher

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to process external legal source documents and repositories to create and update trackers, which introduces a potential vector for malicious instructions embedded in those documents to influence agent behavior.\n
  • Ingestion points: The skill accesses repositories, trackers, tables, and source documents (SKILL.md, Source Files and Step 2).\n
  • Boundary markers: There are no instructions to use delimiters or ignore instructions that may be found within the ingested legal content.\n
  • Capability inventory: The skill is permitted to perform local file read/write operations and generate alerts, digests, or memos (SKILL.md, Step 2 & 5).\n
  • Sanitization: The skill documentation does not define any validation, filtering, or escaping mechanisms for the data retrieved from external documents.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 07:43 AM
Security Audit — agent-trust-hub — chinese-legal-docket-watcher