investor-update-writer

Pass

Audited by Gen Agent Trust Hub on Aug 28, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests data from external sources, creating an attack surface for indirect instructions to influence agent behavior.
  • Ingestion points: SKILL.md (Workflow Step 7) describes parsing various user-provided files like spreadsheets and CRM exports.
  • Boundary markers: Absent. The instructions do not define delimiters to separate data from the prompt.
  • Capability inventory: The Write and Edit tools in SKILL.md allow the agent to modify or create files based on the ingested data.
  • Sanitization: Absent. There are no instructions for sanitizing or validating the input data before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 28, 2026, 07:25 AM
Security Audit — agent-trust-hub — investor-update-writer