us-stock-analysis

Pass

Audited by Gen Agent Trust Hub on Jun 15, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill instructions do not contain any attempts to bypass safety filters or override system constraints. The language is purely functional and focused on the intended stock analysis task.
  • [DATA_EXFILTRATION]: No hardcoded credentials or sensitive file paths were detected. The skill uses web search tools to gather public market data, which is consistent with its stated purpose.
  • [EXTERNAL_DOWNLOADS]: The skill does not download or reference external code, scripts, or binary assets. It only references local markdown files for analytical frameworks.
  • [COMMAND_EXECUTION]: There are no shell commands, subprocess calls, or instructions for the agent to execute arbitrary system operations.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: The skill does not access sensitive user directories (e.g., .ssh, .aws, .env) or attempt to transmit data to non-whitelisted domains.
  • [REMOTE_CODE_EXECUTION]: No patterns associated with remote code execution (e.g., curl | bash) or dynamic code loading were found.
  • [OBFUSCATION]: The content of all files is in plain, readable text. No Base64, hex encoding, zero-width characters, or other hiding techniques were identified.
  • [INDIRECT_PROMPT_INJECTION]: While the skill ingests untrusted data via web search results, it lacks the dangerous capabilities (such as file writing or command execution) required to escalate an injection into a system-level threat. The output is confined to report generation and summarization.
  • [DYNAMIC_CONTEXT_INJECTION]: The SKILL.md file does not utilize the dynamic context execution syntax (!command) for pre-load shell execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 15, 2026, 01:21 PM
Security Audit — agent-trust-hub — us-stock-analysis