research

Pass

Audited by Gen Agent Trust Hub on Aug 29, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to research external documentation and source code, creating a surface for malicious content to influence agent behavior.- Ingestion points: Investigation of external official documentation, source code, and API specifications (SKILL.md).- Boundary markers: The instructions lack requirements for delimiters or warnings to ignore embedded instructions in retrieved content.- Capability inventory: The agent has the capability to write research findings to Markdown files within the repository (SKILL.md).- Sanitization: There are no instructions for sanitizing or validating external content before it is incorporated into the research notes.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 29, 2026, 11:36 AM
Security Audit — agent-trust-hub — research