consulting-analysis

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a set of markdown instructions defining a two-phase workflow for report generation. It focuses on strategic frameworks (e.g., SWOT, PESTEL, Porter's Five Forces) and does not perform any sensitive system operations.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process data summaries and search findings gathered by external tools, which represents a potential surface for indirect prompt injection if the ingested data contains malicious instructions.
  • Ingestion points: Data Summary and External Search Findings inputs in SKILL.md.
  • Boundary markers: None explicitly defined for separating untrusted data from the system prompt.
  • Capability inventory: Synthesis of narrative text and invocation of a data-analysis tool for chart generation.
  • Sanitization: The skill relies on a 'Zero Hallucination Policy' for data integrity but does not mention specific string sanitization for input data.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 05:30 PM
Security Audit — agent-trust-hub — consulting-analysis