lead-research-assistant
Pass
Audited by Gen Agent Trust Hub on Jul 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues or malicious patterns were detected in the skill instructions or metadata. The skill performs legitimate business research and lead generation tasks using standard agent capabilities.
- [PROMPT_INJECTION]: The instructions use natural language to define tasks and do not contain attempts to override safety filters, jailbreak the agent, or extract system prompts.
- [DATA_EXFILTRATION]: No hardcoded credentials, sensitive file path access, or unauthorized network exfiltration patterns were found. The skill focuses on gathering publicly available information such as company websites and LinkedIn profiles.
- [REMOTE_CODE_EXECUTION]: The skill does not include any commands to download or execute external scripts, nor does it specify any untrusted dependencies.
- [COMMAND_EXECUTION]: No dangerous shell commands, privilege escalation attempts, or persistence mechanisms are present in the skill instructions.
- [INDIRECT_PROMPT_INJECTION]: The skill includes functionality to analyze a local codebase to understand the product context. While this represents a standard data ingestion surface, the skill lacks exploitable capabilities (like arbitrary command execution) that would elevate this to a high-risk finding. The agent's standard safety guardrails handle the processing of this content.
Audit Metadata