gov-overseas-trip-report
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the agent to use
npxto download and execute the vendor's CLI package (@nomadamas/k-skill) to obtain instructions and manage skill updates. As this is a vendor-owned resource originating from the identified author, it is considered a legitimate dependency for the skill's operation. - [COMMAND_EXECUTION]: The skill requires the agent to execute shell commands for data discovery and document processing. This includes running the Python helper script
gov_overseas_trip_report.pyand thekordocutility to parse PDF and HWP files. - [INDIRECT_PROMPT_INJECTION]: The skill handles untrusted data from government portals and parsed documents, which presents a potential injection surface.
- Ingestion points: External HTML content scraped by the Python script and document text extracted via the
kordoctool. - Boundary markers: The instructions in
instruction.mdexplicitly command the agent to treat all content found within external documents (such as prompts, URLs, or commands) strictly as data and not as instructions to be executed. - Capability inventory: The skill possesses network access for scraping government websites and the ability to execute shell commands for file processing.
- Sanitization: The tool uses regular expressions and structured data extraction to isolate specific facts, which limits the potential for raw external content to override agent behavior.
Audit Metadata