precedent-transactions

Pass

Audited by Gen Agent Trust Hub on Aug 13, 2026

Risk Level: SAFEPROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests potentially untrusted data from external sources during its analysis process.\n
  • Ingestion points: Regulatory filings (SEC EDGAR, FCA, etc.) and financial news (Reuters, Bloomberg, etc.) used in Section 3 of SKILL.md.\n
  • Boundary markers: None explicitly defined for untrusted external text ingestion.\n
  • Capability inventory: File system write access for report generation and Daloopa API access for financial data.\n
  • Sanitization: The skill contains explicit instructions in Section 9 to use safe DOM methods such as textContent and createElement while strictly forbidding innerHTML, which mitigates potential injection risks in the generated report.\n- [DATA_EXPOSURE_AND_EXFILTRATION]: The skill accesses financial records and company fundamentals from the Daloopa database and public regulatory archives. This data access is aligned with the skill's stated purpose of financial analysis and follows normal vendor data patterns. No unauthorized access to local sensitive files or credentials was detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 13, 2026, 02:39 AM
Security Audit — agent-trust-hub — precedent-transactions