business-analytics

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides legitimate business analysis frameworks and templates with no evidence of malicious intent or unauthorized actions. All described capabilities and response approaches align with the stated purpose of business intelligence and strategic decision support.
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface as it is designed to process and visualize external business data.
  • Ingestion points: Business metrics, data sets, and customer information provided by users for analytical processing as described in SKILL.md and agents/business-analyst.md.
  • Boundary markers: No explicit delimiters or instructions to disregard embedded data commands are included in the provided code templates.
  • Capability inventory: The skill includes templates for Python code execution (utilizing pandas, matplotlib, streamlit, and plotly) and SQL query construction in data-storytelling/SKILL.md and kpi-dashboard-design/SKILL.md.
  • Sanitization: No data validation or sanitization logic is implemented in the provided example snippets.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 05:35 AM
Security Audit — agent-trust-hub — business-analytics