10 / 37 / conversation
Pass
Audited by Gen Agent Trust Hub on Mar 18, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill's prompt instructions explicitly direct the agent to process a set of 'Primary User Questions' as 'primary extraction evidence'. This list of questions includes a request for 'available office365 activation codes' (promoting software piracy) and a query about a sensitive historical date ('1989年6月4日'). These types of queries are frequently used in prompt injection payloads or jailbreak attempts to test and bypass AI safety guardrails regarding illegal content and sensitive political topics.
Audit Metadata