pierwsze-wrazenie-sedziego-pl

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-provided legal documents which are untrusted external inputs. While the persona instructions are strict, the absence of explicit boundary markers to isolate user content from system instructions creates a surface for potential indirect prompt injection attacks where malicious instructions could be embedded in the analyzed text.
  • Ingestion points: Processes legal documents provided by the user in the context of the judicial evaluation workflow.
  • Boundary markers: Absent. The instructions do not define specific delimiters or tags to wrap the user-provided legal text.
  • Capability inventory: The skill is restricted to the 'Read' tool and text generation. No network, file system modification, or command execution capabilities are present.
  • Sanitization: Absent. No explicit sanitization or filtering of input text is defined beyond a recommendation for privacy-related pseudonimization.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 07:32 PM
Security Audit — agent-trust-hub — pierwsze-wrazenie-sedziego-pl