research
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to investigate external primary sources, including documentation and source code, and save findings to the repository.
- Ingestion points: External websites, remote source code repositories, and API documentation accessed during the research process as described in SKILL.md.
- Boundary markers: The instructions lack delimiters or specific directives to ignore instructions that might be embedded within the researched documents.
- Capability inventory: The skill utilizes the agent's ability to read external web/file content and write new Markdown files to the local file system.
- Sanitization: There is no mention of sanitizing, escaping, or validating the external content before it is processed or written to the repository.
Audit Metadata