sec-amendments-review

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill relies on the Octagon MCP server, which is downloaded from the NPM registry via npx during the setup process. Additionally, setup documentation mentions the official Homebrew installation script for macOS users.
  • [COMMAND_EXECUTION]: The skill's setup instructions require executing shell commands to configure and launch the MCP server within the AI agent's environment, ensuring proper authentication through environment variables.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external SEC filing data. As with any tool that ingests external text, there is a possibility that malicious instructions embedded within a filing could affect the agent's behavior.
  • Ingestion points: SEC filings (10-K, 10-Q, 8-K, S-1) are ingested through the octagon-agent tool.
  • Boundary markers: The instructions do not define specific delimiters for separating filing content from the system prompt.
  • Capability inventory: The system uses the octagon-agent tool, which has capabilities for market data retrieval and search.
  • Sanitization: Sanitization is performed by the external Octagon MCP server.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 09:13 PM
Security Audit — agent-trust-hub — sec-amendments-review