4dx-d2-lead-measures
Pass
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists exclusively of markdown documentation and JSON test cases. It does not contain any executable scripts (Python, JavaScript, shell), binary files, or external packages.
- [SAFE]: No prompt injection or behavior override patterns were detected. The instructions are consistently aligned with the stated purpose of coaching the 4DX methodology and do not attempt to bypass safety filters or extract system prompts.
- [SAFE]: There are no hardcoded credentials, sensitive file access patterns, or data exfiltration mechanisms. All external URLs provided in the documentation are for informational and academic purposes, referencing established organizations like the CFPB, HBS, and the VA OIG.
- [SAFE]: No obfuscation techniques, such as hidden Unicode characters, Base64-encoded instructions, or homoglyph attacks, were identified during the analysis of the skill's content.
- [SAFE]: The skill's 'Audit' mode processes user-provided metric lists in a purely logical/textual context without any dangerous tool capabilities (e.g., shell access, file writes, or network requests), mitigating risks associated with indirect prompt injection.
Audit Metadata