pricing-strategy

Pass

Audited by Gen Agent Trust Hub on Apr 18, 2026

Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [PROMPT_INJECTION]: The skill instructions define a surface for indirect prompt injection via the ingestion of external data.\n
  • Ingestion points: The agent is instructed to read marketing-context.md before starting the core pricing design process.\n
  • Boundary markers: There are no specified delimiters or instructions to ignore potential commands embedded within the marketing-context.md file.\n
  • Capability inventory: The skill can trigger the execution of a local script, scripts/pricing_modeler.py.\n
  • Sanitization: The skill lacks instructions for the validation, escaping, or sanitization of data found in the external context file.\n- [COMMAND_EXECUTION]: The skill facilitates the execution of a local Python script, scripts/pricing_modeler.py, to automate pricing scenario modeling based on user-provided inputs.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 18, 2026, 12:07 PM
Security Audit — agent-trust-hub — pricing-strategy