action-items-from-client-alert

Pass

Audited by Gen Agent Trust Hub on Jun 19, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [NO_CODE]: The skill repository is composed entirely of Markdown documentation, configuration files, and reference materials. There are no executable scripts, such as Python or JavaScript files, or binary components included.
  • [SAFE]: The instructions explicitly state that the skill does not fetch external content (e.g., "the skill notes the references but does not fetch external content"). This design choice prevents data exfiltration or the downloading of potentially malicious remote content.
  • [SAFE]: No hardcoded credentials, API keys, or sensitive environment variable patterns were identified in the instructions or example files.
  • [SAFE]: There are no signs of obfuscation, hidden URLs, or malicious redirection techniques. The instructional text is clear and directly aligned with the stated purpose of extracting legal action items.
  • [SAFE]: The skill incorporates strong grounding and verification requirements, such as mandatory per-line source-fidelity tags ([Extracted] vs [Inferred]) and confidence levels. These features reduce the risk of AI hallucination and provide a clear audit trail for the human reviewer.
  • [SAFE]: The skill contains a standard surface for indirect prompt injection because it ingests untrusted user documents. However, this risk is well-mitigated by strict output schema requirements, a lack of tool-execution capabilities, and specific instructions to confirm the document type before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 19, 2026, 12:57 AM
Security Audit — agent-trust-hub — action-items-from-client-alert