client-red-flags

Pass

Audited by Gen Agent Trust Hub on Aug 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides guidance and templates for evaluating potential clients. It does not include any code, external dependencies, or system-level commands.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to analyze external data (prospect messages and project descriptions).
  • Ingestion points: User-provided prospect behavior and messages in SKILL.md.
  • Boundary markers: Absent; the skill does not instruct the agent to use delimiters for external text.
  • Capability inventory: None. The skill generates text responses and does not invoke tools, write to the filesystem, or perform network operations.
  • Sanitization: None.
  • Risk Assessment: Although the skill processes untrusted data, the complete lack of operational capabilities ensures that potential injections cannot be executed to harm the environment or exfiltrate data.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 13, 2026, 12:04 PM
Security Audit — agent-trust-hub — client-red-flags