customer-research
Pass
Audited by Gen Agent Trust Hub on Sep 2, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill provides templates and instructions for qualitative research. It includes a Python script (
scripts/check-output.py) used for validating the presence of required sections in research documents. This script uses standard Python libraries (pathlib,sys) and does not present security risks.- [INDIRECT_PROMPT_INJECTION]: The skill processes external customer research data, which presents an indirect injection surface. * Ingestion points: Research data processed intotemplates/research-repository.csvand research packs. * Boundary markers: Instructions explicitly mandate separating raw evidence from researcher interpretation and preserving original context. * Capability inventory: Limited to local file validation; no network or unsafe execution capabilities identified. * Sanitization: Relies on structural formatting and classification markers to maintain data integrity.- [SAFE]: The skill references other skills from the same author, such asgtm-context-bootstrapandpositioning-messaging, as part of an integrated research workflow.- [SAFE]: External links provided in the documentation target well-known educational and professional service domains related to the skill's specific purpose (e.g., jobstobedone.org, cxl.com).
Audit Metadata