partner-enablement

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of markdown-based instructions and reference materials. No executable scripts, system commands, or external dependencies were detected in any of the provided files.
  • [INDIRECT_PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection because it is designed to ingest and process external data sources such as QBR notes, support tickets, and joint business plans provided by the user. While these sources could potentially contain malicious embedded instructions, the skill does not have access to sensitive capabilities that could be exploited.
  • Ingestion points: Processes user-supplied data such as QBR notes, business plans, portal search logs, and support tickets in the needs assessment and listening tour phases.
  • Boundary markers: No specific delimiters or "ignore embedded instructions" warnings are defined within the instructions.
  • Capability inventory: The skill is limited to providing roadmap designs and does not perform network operations, file system writes, or subprocess executions.
  • Sanitization: No explicit sanitization or filtering of external content is specified.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 09:17 PM
Security Audit — agent-trust-hub — partner-enablement