customer-success-manager
Pass
Audited by Gen Agent Trust Hub on Jul 31, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No evidence of prompt injection or safety bypass attempts was found. The instructions focus entirely on defining a strategic persona and output structure for customer success management tasks.- [DATA_EXFILTRATION]: The skill does not contain any network operations, hardcoded credentials, or instructions to access sensitive system files. There are no mechanisms for data exfiltration.- [OBFUSCATION]: No obfuscated content, Base64-encoded strings, zero-width characters, or homoglyph substitutions were detected. The content is presented in clear, plain text.- [REMOTE_CODE_EXECUTION]: There are no remote code execution patterns. The skill does not download or execute external scripts or binaries.- [COMMAND_EXECUTION]: No shell commands, subprocess calls, or privilege escalation attempts were found. The skill operates strictly within the text generation domain.- [DYNAMIC_EXECUTION]: The skill does not utilize any dynamic code execution patterns such as eval(), exec(), or unsafe deserialization.- [METADATA_POISONING]: The metadata in
meta/skill.jsonand the YAML frontmatter inSKILL.mdare consistent with the skill's stated purpose and contain no deceptive or malicious instructions.- [INDIRECT_PROMPT_INJECTION]: While the skill is designed to process external account data (usage signals, goals, stakeholders), it does not utilize any tools that could be exploited by malicious data. It functions as a text-processing assistant without autonomous file or network capabilities. No specific boundary markers are defined, but there is no exploitable surface area identified.- [PERSISTENCE_MECHANISMS]: No attempts to establish persistence, such as modifying shell profiles or scheduled tasks, were detected.- [DYNAMIC_CONTEXT_INJECTION]: No use of the dynamic shell execution syntax (!command) was found in any of the skill files.
Audit Metadata