product-leadership

Pass

Audited by Gen Agent Trust Hub on May 18, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No behavior-override, safety-bypass, or instruction-extraction patterns were detected in the skill instructions or metadata.
  • [DATA_EXFILTRATION]: No network operations (curl, wget, fetch) or access to sensitive local file paths (e.g., .ssh, .aws, .env) were found.
  • [REMOTE_CODE_EXECUTION]: The skill does not download or execute remote scripts and contains no external dependencies.
  • [COMMAND_EXECUTION]: There are no shell commands, subprocess calls, or dynamic code execution patterns (eval, exec) in any of the analyzed files.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user-provided organizational data such as customer feedback and market analysis (noted in SKILL.md and templates). However, it lacks the necessary capabilities (network access, file-system writes, or code execution) to be exploited via indirect injection.
  • [SAFE]: All components are static markdown templates and instructions for strategic leadership workflows.
Audit Metadata
Risk Level
SAFE
Analyzed
May 18, 2026, 09:45 AM
Security Audit — agent-trust-hub — product-leadership