stock-fund-flow
Pass
Audited by Gen Agent Trust Hub on Aug 14, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes browser automation commands and JavaScript execution (
execute_js) to extract data from the target website's DOM. The JavaScript snippet is a static, low-risk operation targeting a specific jQuery component to retrieve stock data. - [DATA_EXPOSURE]: The skill interacts exclusively with public financial data from a well-known service (eastmoney.com). There is no access to local sensitive files, environment variables, or credentials.
- [REMOTE_CODE_EXECUTION]: No patterns of downloading or executing untrusted remote code were detected. All execution is confined to standard browser interactions and local data processing.
- [PROMPT_INJECTION]: The instructions are focused on data retrieval and processing without any attempts to bypass safety filters or override agent behavior.
Audit Metadata