strategic-advisory
Pass
Audited by Gen Agent Trust Hub on Jul 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is entirely descriptive and instruction-based, focusing on the synthesis of project data into a 'Strategy Case' format. It lacks executable scripts or complex logic that could be exploited for malicious purposes.
- [DATA_EXFILTRATION]: No network operations or data exfiltration patterns were detected. While it references a remote GitHub repository (github.com/lidessen/skills.git), this is the author's own repository and is used for documentation and versioning context.
- [COMMAND_EXECUTION]: There are no shell commands, subprocess calls, or privilege escalation attempts. The instructions explicitly state that the skill does not execute work or modify system states.
- [INDIRECT_PROMPT_INJECTION]: The skill has a data ingestion surface as it processes 'phase evidence' and 'external conditions.' However, the risk is categorized as safe/minimal because the skill has no dangerous capabilities (like network access or file system modification) to exploit. Furthermore, it uses highly structured templates (references/strategy-case.md) that act as natural boundaries for processed data.
Audit Metadata