exam-ready

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill processes untrusted user-provided materials (PDFs and notes), which creates a potential surface for indirect prompt injection attacks. * Ingestion points: Student study materials, PDFs, and syllabus topics provided during interaction as defined in SKILL.md. * Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the prompt. * Capability inventory: The skill has no enabled tools, shell command access, or network operations. * Sanitization: There is no defined process for sanitizing or validating the content of the ingested materials.
  • [NO_CODE]: The skill consists entirely of natural language instructions and YAML metadata without any accompanying scripts, binary executables, or external software dependencies.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 09:58 PM