a-b-testing
Pass
Audited by Gen Agent Trust Hub on Oct 1, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No evidence of safety bypass markers, role-play instructions to ignore guidelines, or attempts to extract system prompts. The persona defined is consistent with the stated educational purpose.
- [DATA_EXFILTRATION]: No sensitive file paths, hardcoded credentials, or network operations were detected. The skill operates locally using provided reference files.
- [OBFUSCATION]: No use of Base64, zero-width characters, homoglyphs, or hidden strings was found in any of the files.
- [REMOTE_CODE_EXECUTION]: The skill does not perform any remote downloads, script execution, or package installations. It is entirely markdown-based guidance.
- [PRIVILEGE_ESCALATION]: No commands for elevating permissions, such as sudo or chmod, are present.
- [DYNAMIC_CONTEXT_INJECTION]: The skill does not use the exclamation-backtick syntax or any other method to execute shell commands at load time.
- [INDIRECT_PROMPT_INJECTION]: While the skill is designed to analyze user-provided experiment designs (an ingestion surface), it lacks any dangerous capabilities (file writes, network calls, tool execution) that could be exploited by malicious data. It serves as a passive analytical advisor.
Audit Metadata