digits-fintech-swiss-template
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill defines a workflow for ingesting untrusted user data to populate an HTML template, creating a surface for indirect prompt injection.\n- Ingestion points: Workflow in
SKILL.mdrequires replacing copy and metrics from user input.\n- Boundary markers: The output is encapsulated in<artifact>tags, though specific delimiters for untrusted data within the template are not defined.\n- Capability inventory: The skill utilizes thefile_writecapability to produce the output artifact.\n- Sanitization: Thereferences/checklist.mdenforces the exclusion of sandbox-hostile APIs such aslocalStorageandwindow.openin the generated content.
Audit Metadata