inventory-reorder-planner
Pass
Audited by Gen Agent Trust Hub on Jul 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides business logic for inventory analysis and does not contain any malicious code, obfuscation, or unauthorized network operations.
- [PROMPT_INJECTION]: The skill ingests untrusted data from external sources (POS, Shopify, or marketplace exports), which creates a technical surface for indirect prompt injection. However, given the use case and lack of dangerous autonomous actions, this is considered a standard operational risk rather than a malicious finding.
- Ingestion points: Sales history exports and stock counts referenced in SKILL.md.
- Boundary markers: None defined.
- Capability inventory: The skill utilizes tools such as Bash, Read, Write, Grep, and Glob for data processing.
- Sanitization: No explicit data sanitization or validation logic is defined.
Audit Metadata