general-query-literature-database

Pass

Audited by Gen Agent Trust Hub on Jun 19, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the grep command to search through local files.
  • Evidence: grep -rn "^description:" .agents/workflows/ in SKILL.md.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes content from markdown files in the .agents/workflows/ directory. If these files contain malicious instructions, they could potentially influence the agent's behavior.
  • Ingestion points: Local markdown files located in .agents/workflows/ (SKILL.md).
  • Boundary markers: Absent; the skill does not specify delimiters or instructions to ignore embedded commands in the scanned files.
  • Capability inventory: Executes the grep command via the shell (SKILL.md).
  • Sanitization: Absent; no filtering or validation is performed on the content extracted from the files.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 19, 2026, 04:46 PM