stocks-advisor-fast
Pass
Audited by Gen Agent Trust Hub on Aug 20, 2026
Risk Level: SAFENO_CODEPROMPT_INJECTION
Full Analysis
- [NO_CODE]: This skill is composed solely of instructions in markdown format and does not contain any executable scripts or library dependencies.
- [PROMPT_INJECTION]: The skill instructs the agent to fetch data from external websites, creating a surface for potential indirect prompt injection.
- Ingestion points: The skill specifies numerous reputable domains including sec.gov, nasdaq.com, ft.com, reuters.com, and bloomberg.com via the SKILL.md file.
- Boundary markers: The instructions do not define delimiters or specific safety markers to help the agent separate external data from its core instructions.
- Capability inventory: The skill utilizes web-browsing tools to perform financial research and synthesize findings into a report.
- Sanitization: There are no instructions provided for sanitizing or filtering the content retrieved from these external sources before it is processed by the agent.
Audit Metadata