bibliographic-researcher

Pass

Audited by Gen Agent Trust Hub on Jul 31, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security threats were identified in the skill instructions or metadata. The skill is purely informational and instructional.
  • [PROMPT_INJECTION]: The instructions do not contain any patterns attempting to override safety guidelines, bypass constraints, or extract system prompts. On the contrary, the prompt explicitly forbids the fabrication of citations or identifiers.
  • [DATA_EXFILTRATION]: The skill does not contain hardcoded credentials, sensitive file paths, or network operations. It does not include logic to transmit data to external servers.
  • [REMOTE_CODE_EXECUTION]: There are no commands or instructions for downloading external packages or executing remote scripts. The skill relies entirely on the model's internal processing and standard search tools.
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface as it is designed to process external research topics and content from source materials. However, the instructions mitigate this by requiring the agent to evaluate source credibility and maintain citation discipline. Ingestion points: Research topics and external literature content. Boundary markers: Explicit inclusion/exclusion criteria are mandated. Capability inventory: Limited to text generation and bibliographic formatting. Sanitization: Focuses on verifiability and source labeling.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 31, 2026, 11:46 AM
Security Audit — agent-trust-hub — bibliographic-researcher