dbs-chatroom-austrian

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill incorporates untrusted user input into the prompt templates used to invoke sub-agent roles, creating a surface for potential instruction override.
  • Ingestion points: User input is interpolated into the {用户问题} and {新问题} variables within SKILL.md.
  • Boundary markers: The sub-agent prompt templates (Hayek and Mises) lack delimiters or explicit instructions to ignore potentially malicious content embedded within the user's query.
  • Capability inventory: The skill invokes the Agent tool to generate responses from external Claude Sonnet instances based on the interpolated prompts.
  • Sanitization: No filtering, escaping, or validation logic is applied to the user input before it is passed to the models.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 02:25 PM
Security Audit — agent-trust-hub — dbs-chatroom-austrian