a-share-screener

Pass

Audited by Gen Agent Trust Hub on Sep 25, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to ingest and process data from external financial platforms (e.g., East Money, Tonghuashun i问财, Xueqiu) via web search.
  • Ingestion points: Suggested search queries for third-party websites in the Data Sources section of SKILL.md.
  • Boundary markers: The instructions do not define delimiters or specific "ignore" commands for handling embedded instructions within the retrieved web content.
  • Capability inventory: The skill is limited to stock data analysis, filtering, and table formatting; it does not request high-privilege capabilities like file writing or system command execution.
  • Sanitization: No explicit content validation or sanitization rules are provided for handling external search results.
  • [NO_CODE]: The skill consists solely of informational markdown and YAML frontmatter. It does not include executable scripts, automation code, or compiled binaries, which minimizes the technical attack surface.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 25, 2026, 08:05 AM
Security Audit — agent-trust-hub — a-share-screener