flowio
Pass
Audited by Gen Agent Trust Hub on Oct 1, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The processing of external Flow Cytometry Standard (FCS) files represents an indirect prompt injection surface.
- Ingestion points: The
scripts/inspect_fcs.pyutility and the code examples provided inSKILL.mdingest local.fcsdata files from the environment. - Boundary markers: While the provided scripts produce structured JSON output, the instructions do not include specific delimiters or warnings to the agent to disregard instructions potentially embedded within the TEXT or ANALYSIS segments of the FCS files.
- Capability inventory: The skill is configured with
Read,Write, andBashtools, and instructions demonstrate execution of Python scripts and shell commands via theuvtool. - Sanitization:
scripts/inspect_fcs.pyuses standard JSON serialization for reporting results, which mitigates structural confusion but does not perform content-based filtering or sanitization of metadata values.
Audit Metadata