referral-program

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides educational content, strategic frameworks, and formulas for marketing growth. A thorough analysis shows no evidence of malicious code, unauthorized file access, or network exfiltration across all files.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied business data to provide customized advice. This ingestion surface is well-guarded by mandatory protocols that instruct the agent to treat external inputs as hostile and redact sensitive information. Furthermore, the skill lacks the necessary toolset (e.g., file-writing or network tools) to act as an exploitation vector.
  • [COMMAND_EXECUTION]: The mention of a terminal execution proxy ('rtk') is part of the framework's documentation for operational traceability and testing standards. It does not represent an actual command execution vulnerability in the skill's logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 07:36 AM
Security Audit — agent-trust-hub — referral-program