ln-51-opportunity-evaluator
Pass
Audited by Gen Agent Trust Hub on Sep 8, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill establishes a strict execution contract that forbids implementation work, file creation, or customer outreach, ensuring the agent remains in a read-only analysis state.
- [SAFE]: The framework includes rigorous data validation rules, such as distinguishing between different evidence classes (MEASURED vs INFERRED) and prohibiting the inference of market data from search result counts, which reduces the impact of unreliable data.
- [INDIRECT_PROMPT_INJECTION]: The skill possesses an attack surface for indirect prompt injection as it actively encourages reading data from external sources.
- Ingestion points: The skill processes data from web research, trend data, communities, and customer reviews as specified in SKILL.md.
- Boundary markers: The instructions do not define specific delimiters or instructions to ignore embedded prompts within the external data.
- Capability inventory: The skill is permitted to use web research tools and access public APIs.
- Sanitization: There are no explicit instructions for sanitizing or escaping the content retrieved from external sources before it is analyzed by the agent.
Audit Metadata