watchlist-review

Pass

Audited by Gen Agent Trust Hub on Mar 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill operates as a set of logical instructions for the AI agent to organize and filter user-supplied financial data. It contains no executable scripts, binaries, or tool definitions.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: No hardcoded credentials, API keys, or sensitive file paths (e.g., .ssh, .aws) were detected. The skill explicitly instructs the agent not to fetch live data unless specifically paired with other research tools by the user.
  • [COMMAND_EXECUTION]: There are no instances of shell command execution, subprocess spawning, or system-level modifications in the provided files.
  • [REMOTE_CODE_EXECUTION]: No patterns associated with downloading or executing remote scripts (such as curl | bash) are present.
  • [INDIRECT_PROMPT_INJECTION]: This skill has an ingestion surface for untrusted data as it processes user-provided watchlists in SKILL.md. However, it has no exploitable capabilities (no network operations, no file writing, and no code execution), meaning it cannot be used to perform malicious actions even if malicious instructions are embedded in the processed data.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 22, 2026, 07:05 AM
Security Audit — agent-trust-hub — watchlist-review