ciso-advisor
Pass
Audited by Gen Agent Trust Hub on Apr 18, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill focuses on executive-level security strategy and risk management. Analysis of the instructions and metadata revealed no evidence of prompt injection, data exfiltration, or obfuscation. All external references are to local files or internal tools.
- [COMMAND_EXECUTION]: The skill references the execution of local Python scripts (
scripts/risk_quantifier.pyandscripts/compliance_tracker.py). These tools are listed in the skill metadata and are used for their intended purpose of calculating Annual Loss Expectancy (ALE) and mapping compliance frameworks. No remote code execution or shell injection patterns were found.
Audit Metadata