collab-status-report
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is primarily instructional and provides templates for structured reporting. It does not contain any executable scripts, remote downloads, or hidden commands.
- [DATA_EXPOSURE]: The skill includes a 'Security Warning' advising users to verify distribution ranges when including financial or HR data, which is a security best practice for reporting tools.
- [INDIRECT_PROMPT_INJECTION]: The skill ingests user-provided metrics and files to generate reports. While processing external data is an inherent surface for indirect injection, the skill is scoped to formatting and summarization, and it explicitly recommends human review of the generated output. The severity is considered safe as the workflow involves standard data processing for its stated purpose.
Audit Metadata