weak-signal-synthesizer

Pass

Audited by Gen Agent Trust Hub on Sep 25, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill instructions direct the agent to monitor and synthesize information from various external and untrusted sources, including social media (Reddit), code repositories (GitHub), and academic preprints. This creates a surface for indirect prompt injection where malicious actors could embed hidden instructions in those sources to influence the agent's output or behavior. 1. Ingestion points: Niche Reddit communities, academic preprints, GitHub trending, patent filings, VC funding, regulatory changes, and industry news. 2. Boundary markers: The skill lacks explicit instructions to treat external data as untrusted or to use delimiters to separate source content from the agent's core logic. 3. Capability inventory: The skill is designed for information synthesis; while no specific execution tools are defined in the frontmatter, the agent would use its internal tools (like search or browsing) to access these sources. 4. Sanitization: There are no requirements for sanitizing or validating the content retrieved from external sources before processing.
  • [NO_CODE]: The provided skill contains only markdown instructions and configuration metadata. It does not include any scripts, binary files, or automated installation commands.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 25, 2026, 08:03 AM
Security Audit — agent-trust-hub — weak-signal-synthesizer