affiliate-commission-structure

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFENO_CODEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [NO_CODE]: The skill is composed strictly of instruction and reference markdown files without any executable scripts or tool configurations.
  • [EXTERNAL_DOWNLOADS]: The skill references various industry-standard platforms and expert resources (e.g., Shopify, TikTok, Awin, and adamriemer.me) for calibration and benchmarks. These are informational references and do not involve automated script downloads or runtime code execution.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted user business data (e.g., profit margins, churn rates) to perform calculations. 1. Ingestion: Through the structured interview process in SKILL.md. 2. Boundaries: Delimited by a specific 'Commission Structure Spec' output format. 3. Capabilities: None; the skill has no code execution tools. 4. Sanitization: N/A. The surface is categorized as safe due to the lack of exploitable capabilities.
  • [SAFE]: No malicious patterns, obfuscation, or unauthorized data access attempts were detected during the analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 10:16 PM
Security Audit — agent-trust-hub — affiliate-commission-structure