customer-research

Pass

Audited by Gen Agent Trust Hub on Aug 25, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill facilitates the ingestion and analysis of untrusted data from multiple external sources, which creates a vulnerability surface for indirect prompt injection attacks.\n
  • Ingestion points: Raw research assets (transcripts, surveys, support tickets) and online community data (Reddit, G2, LinkedIn, forums) specified in SKILL.md and references/source-guides.md.\n
  • Boundary markers: The instructions lack specific guidance for the agent to use delimiters or safety wrappers when processing external content to prevent the execution of embedded instructions.\n
  • Capability inventory: The skill directs the agent to perform file reading and web search/browsing tasks to extract specific themes and quotes.\n
  • Sanitization: There are no documented requirements for sanitizing or validating the content retrieved from external research sources before synthesis.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 25, 2026, 07:52 AM
Security Audit — agent-trust-hub — customer-research