us-nerc-cip-expert
Pass
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is to provide expert guidance on NERC Critical Infrastructure Protection (CIP) standards. No malicious patterns, such as obfuscation, credential harvesting, or persistence mechanisms, were detected.
- [INDIRECT_PROMPT_INJECTION]: The skill provides a framework for analyzing compliance artifacts, which involves ingesting user-provided evidence and documentation. This creates a surface for indirect prompt injection if malicious instructions are embedded in compliance documents; however, the skill does not contain logic that would automatically execute such content.
- [EXTERNAL_DOWNLOADS]: The skill references external data sources, including the Secure Controls Framework (SCF) API and official regulatory websites (NERC and FERC). These are documented for informational purposes and do not involve the automated download or execution of scripts.
Audit Metadata