budget-extraction-qualification

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of instructional text and illustrative code snippets focused on sales bot strategies. No malicious patterns or bypass attempts were found.
  • [CREDENTIALS_UNSAFE]: No hardcoded API keys, tokens, or sensitive credentials were found in the skill metadata or body.
  • [COMMAND_EXECUTION]: No shell commands, subprocess calls, or dangerous system operations were identified in the instructions or code examples.
  • [DATA_EXFILTRATION]: The skill does not perform network operations or access sensitive file paths for exfiltration.
  • [OBFUSCATION]: The content is provided in plain text without the use of encoding, hidden characters, or homoglyph substitutions.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines a surface for processing user conversation data (ingestion points: responses and conversation_state in SKILL.md). While boundary markers and sanitization are absent, the skill possesses no dangerous capabilities (network, file-write, or shell access) to facilitate an exploit.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 04:04 PM
Security Audit — agent-trust-hub — budget-extraction-qualification