precedent-transactions
Pass
Audited by Gen Agent Trust Hub on Aug 13, 2026
Risk Level: SAFEPROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests potentially untrusted data from external sources during its analysis process.\n
- Ingestion points: Regulatory filings (SEC EDGAR, FCA, etc.) and financial news (Reuters, Bloomberg, etc.) used in Section 3 of
SKILL.md.\n - Boundary markers: None explicitly defined for untrusted external text ingestion.\n
- Capability inventory: File system write access for report generation and Daloopa API access for financial data.\n
- Sanitization: The skill contains explicit instructions in Section 9 to use safe DOM methods such as
textContentandcreateElementwhile strictly forbiddinginnerHTML, which mitigates potential injection risks in the generated report.\n- [DATA_EXPOSURE_AND_EXFILTRATION]: The skill accesses financial records and company fundamentals from the Daloopa database and public regulatory archives. This data access is aligned with the skill's stated purpose of financial analysis and follows normal vendor data patterns. No unauthorized access to local sensitive files or credentials was detected.
Audit Metadata