scope-leads

Pass

Audited by Gen Agent Trust Hub on Aug 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a structured workflow for lead generation scoping, collecting user decisions and constraints. No malicious patterns, such as data exfiltration or unauthorized command execution, were identified.
  • [PROMPT_INJECTION]: The skill records user input into a file that is later read by other agent skills. While this design creates a surface for indirect prompt injection due to the lack of explicit sanitization instructions, it is an intended part of the lead-scoping process and does not represent a malicious finding in this context.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 11, 2026, 04:27 PM
Security Audit — agent-trust-hub — scope-leads