revenue-operations

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No prompt injection or behavior override patterns were detected. The instructions follow a standard workflow for data analysis and verification.
  • [DATA_EXFILTRATION]: No sensitive file paths, hardcoded credentials, or network exfiltration patterns were found. The scripts process local JSON input and provide output via standard streams.
  • [REMOTE_CODE_EXECUTION]: The skill does not download or execute remote code. It relies on local Python scripts included in the package.
  • [COMMAND_EXECUTION]: Command execution is limited to running the included Python scripts for data processing. No dangerous shell commands or unsafe subprocess calls were detected.
  • [SAFE]: The skill ingests untrusted JSON data via its analysis scripts. While the scripts do not use specific boundary markers, the risk of indirect prompt injection is mitigated by the fact that the data is processed mathematically and structurally rather than being directly interpolated into agent prompts for instruction following.
  • [SAFE]: No obfuscation (Base64, zero-width characters, or homoglyphs) was detected in the scripts or documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 01:47 PM
Security Audit — agent-trust-hub — revenue-operations