customer-research
Pass
Audited by Gen Agent Trust Hub on Aug 25, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill facilitates the ingestion and analysis of untrusted data from multiple external sources, which creates a vulnerability surface for indirect prompt injection attacks.\n
- Ingestion points: Raw research assets (transcripts, surveys, support tickets) and online community data (Reddit, G2, LinkedIn, forums) specified in SKILL.md and references/source-guides.md.\n
- Boundary markers: The instructions lack specific guidance for the agent to use delimiters or safety wrappers when processing external content to prevent the execution of embedded instructions.\n
- Capability inventory: The skill directs the agent to perform file reading and web search/browsing tasks to extract specific themes and quotes.\n
- Sanitization: There are no documented requirements for sanitizing or validating the content retrieved from external research sources before synthesis.
Audit Metadata