competitive-scan-lite
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill contains purely instructional content for research and analysis. No patterns associated with safety bypass, system prompt extraction, or role-play injections were detected.
- [DATA_EXFILTRATION]: The instructions focus exclusively on gathering public information from external sources like pricing pages, documentation, and reviews. There are no commands that access sensitive local files, environment variables, or hardcoded credentials.
- [REMOTE_CODE_EXECUTION]: No patterns for downloading or executing remote scripts were identified. The skill does not include any external package dependencies or runtime code execution.
- [COMMAND_EXECUTION]: The skill does not utilize shell commands, system calls, or privilege escalation techniques. It operates entirely as a set of analytical guidelines for the agent.
- [INDIRECT_PROMPT_INJECTION]: While the skill involves processing untrusted external data (public websites), it mitigates risks by requiring explicit sourcing, evidence flags (e.g., claimed vs. observed), and structured output. This approach encourages the agent to treat external data as evidence rather than instructions.
Audit Metadata