resume-papers

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests user-supplied content (links or text from scientific papers) for summarization, which creates an indirect prompt injection surface.
  • Ingestion points: The primary input is the article content provided by the user as described in SKILL.md.
  • Boundary markers: There are no explicit delimiters or instructions to ignore potential commands within the user-provided text.
  • Capability inventory: The skill instructions are limited to text analysis and generation based on a static template in assets/formato.md; no network, file-write, or command-execution tools are invoked.
  • Sanitization: No sanitization or validation of the input content is implemented.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 06:24 PM
Security Audit — agent-trust-hub — resume-papers