research-deep

Pass

Audited by Gen Agent Trust Hub on Jul 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill uses dynamic context injection to retrieve the current Git branch name for project grounding. This is a read-only, benign system command used according to standard development practices.
  • [SAFE]: The skill ingests user-provided research topics through arguments and interpolates them into instructions for subagents. The potential for indirect prompt injection is mitigated by the skill's design, which emphasizes execution isolation and mandatory primary-source verification to prevent ungrounded synthesis.
  • [SAFE]: All tool invocations (Agent, Workflow) and file system interactions follow the defined research discipline and do not involve unauthorized credential access, external downloads from untrusted sources, or persistent system changes.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 30, 2026, 07:55 PM
Security Audit — agent-trust-hub — research-deep