kol-zchut-lookup

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill interacts exclusively with kolzchut.org.il, which is an established and reputable non-profit resource for Israeli legal and citizen rights information.
  • [COMMAND_EXECUTION]: The skill does not perform any shell command execution or system-level operations. It relies on headless HTTP GET requests to a public API endpoint.
  • [DATA_EXFILTRATION]: No sensitive user data, environment variables, or local credentials are accessed or transmitted by this skill.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests external content from search snippets and article text. While processing external data is a common vector for indirect prompt injection, the risk is categorized as low because the source is a curated, high-reputation public wiki. The instructions also include steps for the agent to strip HTML tags before presentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 08:02 AM
Security Audit — agent-trust-hub — kol-zchut-lookup