customer-research

Pass

Audited by Gen Agent Trust Hub on Sep 2, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides templates and instructions for qualitative research. It includes a Python script (scripts/check-output.py) used for validating the presence of required sections in research documents. This script uses standard Python libraries (pathlib, sys) and does not present security risks.- [INDIRECT_PROMPT_INJECTION]: The skill processes external customer research data, which presents an indirect injection surface. * Ingestion points: Research data processed into templates/research-repository.csv and research packs. * Boundary markers: Instructions explicitly mandate separating raw evidence from researcher interpretation and preserving original context. * Capability inventory: Limited to local file validation; no network or unsafe execution capabilities identified. * Sanitization: Relies on structural formatting and classification markers to maintain data integrity.- [SAFE]: The skill references other skills from the same author, such as gtm-context-bootstrap and positioning-messaging, as part of an integrated research workflow.- [SAFE]: External links provided in the documentation target well-known educational and professional service domains related to the skill's specific purpose (e.g., jobstobedone.org, cxl.com).
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 2, 2026, 12:47 PM
Security Audit — agent-trust-hub — customer-research