order-management-pretrade-risk

Pass

Audited by Gen Agent Trust Hub on Apr 25, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes a local Python script (scripts/order_management_pretrade_risk_diagnostics.py) to perform data aggregation and statistical analysis on financial order records.
  • [PROMPT_INJECTION]: The skill processes untrusted external data via CSV files, creating a potential indirect prompt injection surface. However, the risk is mitigated as the script strictly coerces data to numeric and datetime types for analysis and does not evaluate data as code. No direct prompt injection or behavioral overrides were found in the skill instructions.
  • [SAFE]: No evidence of data exfiltration, credential theft, or obfuscation was detected. All script operations are local, and dependencies are limited to standard data science libraries.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 25, 2026, 06:11 AM
Security Audit — agent-trust-hub — order-management-pretrade-risk