vendor-privacy-policy-first-pass

Pass

Audited by Gen Agent Trust Hub on Jul 8, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The instructions are task-specific and do not contain patterns aimed at overriding agent behavior or bypassing safety guidelines.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: No hardcoded credentials or sensitive data access patterns were found.
  • [OBFUSCATION]: No encoded or hidden content was detected in the skill files.
  • [REMOTE_CODE_EXECUTION]: The skill does not perform external downloads or execute code.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted documents (ingestion point: document input), which is a potential surface. However, the capability inventory shows no dangerous tools (no network or shell access), and instructions explicitly prevent fetching external references, mitigating the risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 8, 2026, 08:53 AM
Security Audit — agent-trust-hub — vendor-privacy-policy-first-pass