general-query-literature-database
Pass
Audited by Gen Agent Trust Hub on Jun 19, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the
grepcommand to search through local files. - Evidence:
grep -rn "^description:" .agents/workflows/in SKILL.md. - [INDIRECT_PROMPT_INJECTION]: The skill processes content from markdown files in the
.agents/workflows/directory. If these files contain malicious instructions, they could potentially influence the agent's behavior. - Ingestion points: Local markdown files located in
.agents/workflows/(SKILL.md). - Boundary markers: Absent; the skill does not specify delimiters or instructions to ignore embedded commands in the scanned files.
- Capability inventory: Executes the
grepcommand via the shell (SKILL.md). - Sanitization: Absent; no filtering or validation is performed on the content extracted from the files.
Audit Metadata