dpdp-compliance
Pass
Audited by Gen Agent Trust Hub on Jul 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is composed of static Markdown documents providing legal references and technical guidance. It does not contain any executable scripts, binary files, or automated commands that could compromise the security of the host environment.
- [DATA_EXFILTRATION]: Analysis of all reference and asset files confirmed that no sensitive data (such as environment variables or credentials) is accessed or transmitted to external domains. The network calls described in the installation instructions are standard for the platform and are intended for user execution.
- [OBFUSCATION]: The skill files were inspected for hidden payloads including Base64-encoded strings, zero-width characters, homoglyphs, and URL-encoding tricks. No such techniques were found.
- [PROMPT_INJECTION]: The instructions provided in SKILL.md are instructional and well-bounded. There are no attempts to use 'jailbreak' keywords or override the core safety protocols of the AI agent.
- [INDIRECT_PROMPT_INJECTION]: While the skill's purpose involves the agent reading and auditing external codebases (an untrusted data source), the instructions are limited to technical analysis and providing templates, with no instructions for the agent to execute code found within the audited files.
Audit Metadata