find-expert

Pass

Audited by Gen Agent Trust Hub on Jul 15, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes potentially untrusted data from internal search results (code contributions, documentation authorship, and meeting activity), which is a common vector for indirect prompt injection.
  • Ingestion points: The skill ingests data from employee_search, code_search, and search tools in Phase 1 and Phase 2.
  • Boundary markers: There are no explicit boundary markers or instructions provided to the agent to disregard instructions embedded within the retrieved data.
  • Capability inventory: The skill's capabilities are limited to information retrieval and reporting; no dangerous capabilities such as arbitrary code execution, file system modification, or network exfiltration were identified.
  • Sanitization: The skill does not specify any sanitization, filtering, or validation steps for the content retrieved from search tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 15, 2026, 06:51 PM
Security Audit — agent-trust-hub — find-expert