chinese-legal-docket-watcher
Pass
Audited by Gen Agent Trust Hub on Aug 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to process external legal source documents and repositories to create and update trackers, which introduces a potential vector for malicious instructions embedded in those documents to influence agent behavior.\n
- Ingestion points: The skill accesses repositories, trackers, tables, and source documents (SKILL.md, Source Files and Step 2).\n
- Boundary markers: There are no instructions to use delimiters or ignore instructions that may be found within the ingested legal content.\n
- Capability inventory: The skill is permitted to perform local file read/write operations and generate alerts, digests, or memos (SKILL.md, Step 2 & 5).\n
- Sanitization: The skill documentation does not define any validation, filtering, or escaping mechanisms for the data retrieved from external documents.
Audit Metadata