mergers-analyst
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security threats detected. The skill consists entirely of Markdown instructions and JSON metadata for an AI agent to perform business analysis tasks.
- [PROMPT_INJECTION]: No evidence of instruction override, safety bypass, or role-play injection. The instructions are focused on guiding the model's analytical framework for M&A scenarios.
- [DATA_EXFILTRATION]: No network operations, API calls, or hardcoded credentials detected. The skill does not attempt to access sensitive local file paths (e.g., .ssh, .env).
- [REMOTE_CODE_EXECUTION]: No remote script downloads or piped command execution (curl|bash) identified. There are no external dependencies or package installations.
- [COMMAND_EXECUTION]: No shell command execution or subprocess spawning patterns were found in the instructions or scripts.
- [DYNAMIC_CONTEXT_INJECTION]: No dynamic execution markers (e.g.,
!commandsyntax) found in the SKILL.md file. - [OBFUSCATION]: No evidence of Base64 encoding, zero-width characters, homoglyphs, or other techniques to hide malicious content.
Audit Metadata