action-tracker
Pass
Audited by Gen Agent Trust Hub on Jul 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or data exfiltration attempts were detected in the skill instructions or reference files.
- [PROMPT_INJECTION]: The skill processes untrusted documents such as meeting notes and executive briefs, which constitutes an ingestion point for indirect prompt injection. 1. Ingestion points:
SKILL.md(Core Workflow Step 1). 2. Boundary markers: Absent. 3. Capability inventory: No file-write, network, or command execution capabilities were detected in any skill files. 4. Sanitization: Absent. The risk is considered safe because the skill lacks any capabilities that could be exploited by embedded instructions.
Audit Metadata