stocks-advisor-fast

Pass

Audited by Gen Agent Trust Hub on Aug 20, 2026

Risk Level: SAFENO_CODEPROMPT_INJECTION
Full Analysis
  • [NO_CODE]: This skill is composed solely of instructions in markdown format and does not contain any executable scripts or library dependencies.
  • [PROMPT_INJECTION]: The skill instructs the agent to fetch data from external websites, creating a surface for potential indirect prompt injection.
  • Ingestion points: The skill specifies numerous reputable domains including sec.gov, nasdaq.com, ft.com, reuters.com, and bloomberg.com via the SKILL.md file.
  • Boundary markers: The instructions do not define delimiters or specific safety markers to help the agent separate external data from its core instructions.
  • Capability inventory: The skill utilizes web-browsing tools to perform financial research and synthesize findings into a report.
  • Sanitization: There are no instructions provided for sanitizing or filtering the content retrieved from these external sources before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 20, 2026, 02:22 PM
Security Audit — agent-trust-hub — stocks-advisor-fast