skills/jeremylongshore/tons-of-skills-marketplace/openevidence-migration-deep-dive/Gen Agent Trust Hub
openevidence-migration-deep-dive
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes legacy prompts and reports, which serves as an ingestion surface for potentially untrusted data that could influence the agent's behavior. \n
- Ingestion points: Instructions in
SKILL.mddirect the agent to inventory legacy Deep Consult prompts, reports, and user groups. \n - Boundary markers: The instructions do not define specific syntax delimiters for the content being processed, but provide high-level conceptual boundaries. \n
- Capability inventory: The skill has access to
Read,Glob,Grep,Write,Edit, andWebFetchtools across its scripts. \n - Sanitization: The skill includes mandatory instructions to redact patient and credential data, use synthetic data for testing, and avoid reusing legacy prompts containing PHI.\n- [EXTERNAL_DOWNLOADS]: The skill is configured to fetch current documentation from the official OpenEvidence domain. \n
- Evidence: Instructions in
SKILL.mdlimitWebFetchusage specifically to current first-party OpenEvidence documentation. \n - Sources: Fetches resources from
openevidence.comandtrust.openevidence.com.
Audit Metadata