investment-thesis-synthesis

Pass

Audited by Gen Agent Trust Hub on Aug 8, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill implements a secure template-based synthesis workflow that encourages evidence-based reasoning and preserves user control over financial decisions. It lacks any functionality for network communication, hardcoded credentials, or system-level command execution.
  • [PROMPT_INJECTION]: The skill displays a surface for indirect prompt injection because it ingests untrusted external data such as market news, company filings, and earnings reports. However, the risk is evaluated as safe because the agent's capabilities are restricted to writing research artifacts to a specific local path, with no access to execution tools or external servers.
  • Ingestion points: Target profiles, archive indices, and evidence notes loaded in Step 1 of the workflow in SKILL.md.
  • Boundary markers: Absent; there are no specific instructions to encapsulate external content with delimiters.
  • Capability inventory: The skill is limited to reading local research files and writing artifacts to 'research/targets//artifacts/'.
  • Sanitization: No explicit content sanitization or validation of the ingested evidence is defined.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 8, 2026, 10:23 PM
Security Audit — agent-trust-hub — investment-thesis-synthesis