executive-briefing
Pass
Audited by Gen Agent Trust Hub on Jul 29, 2026
Risk Level: SAFENO_CODEPROMPT_INJECTION
Full Analysis
- [NO_CODE]: The skill is comprised entirely of markdown and YAML configuration files. No executable scripts, binaries, or dangerous command patterns were identified.
- [SAFE]: No malicious patterns such as credential exfiltration, persistence mechanisms, or obfuscation were detected.
- [PROMPT_INJECTION]: The skill defines a workflow for processing external data signals (metrics, customer issues, revenue). While this creates a surface for indirect prompt injection, the skill lacks tool-use capabilities or filesystem access, making the risk negligible.
- Ingestion points: Step 2 of the Core Workflow in
SKILL.md(Gather supplied signals). - Boundary markers: Absent.
- Capability inventory: None (limited to natural language text generation).
- Sanitization: Absent.
Audit Metadata