finance-ops

Pass

Audited by Gen Agent Trust Hub on Aug 6, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [SAFE]: The skill instructions are focused exclusively on financial controllership and accounting workflows. There are no patterns of prompt injection, role-play bypasses, or instructions to ignore safety protocols. Localization examples in Spanish and Catalan are used appropriately for testing and do not contain hidden commands.\n- [COMMAND_EXECUTION]: The skill references a local validation script, scripts/verify.sh, which is intended to check the structural and mathematical integrity of generated financial reports (CSV files). Analysis of the script confirms it is a read-only bash utility that uses standard tools like awk and find to validate column presence and balance continuity. It does not perform network operations or system modifications.\n- [SAFE]: No instances of data exfiltration, unauthorized network access, or credential exposure were found. The skill correctly instructs the agent to handle sensitive financial data within the local environment and explicitly warns against 'Other expenses' junk drawers to ensure auditability and transparency.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 6, 2026, 09:37 PM
Security Audit — agent-trust-hub — finance-ops