dcf

Pass

Audited by Gen Agent Trust Hub on Aug 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs legitimate financial analysis tasks consistent with its description.
  • [SAFE]: All external references and citation links point to the vendor's own domain (daloopa.com), representing standard functionality for this author.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: The skill accesses financial data through defined tools and saves reports to a local 'reports/' directory. No evidence of unauthorized data harvesting or sensitive system file access was found.
  • [PROMPT_INJECTION]: Instructions are focused on financial logic and reporting structure. No attempts to override agent safety guidelines or hide malicious instructions were detected.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests user-provided tickers and external financial data. While this is a standard data ingestion surface, the risk is minimal as the data is used for financial calculations and formatted into a static HTML report.
  • [REMOTE_CODE_EXECUTION]: No remote code execution or unauthorized package installations were identified.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 2, 2026, 07:46 PM
Security Audit — agent-trust-hub — dcf