report-findings
Pass
Audited by Gen Agent Trust Hub on Jun 21, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill provides structured instructions for report generation and research synthesis. No instructions to bypass safety guidelines, override system behavior, or extract system prompts were found.
- [DATA_EXPOSURE_AND_EXFILTRATION]: No sensitive file paths, hardcoded credentials, or network transmission commands are present. The skill focuses on organizing information for reporting.
- [INDIRECT_PROMPT_INJECTION]: The skill's primary function is to process multi-source research data, which creates a potential surface for indirect prompt injection from malicious source content. The instructions include a 'source_authority' framework to help the agent assess credibility, but do not explicitly mandate delimiters or 'ignore' instructions for the raw source data. Given the skill has no code or tool-access capabilities, this is considered a safe architectural pattern.
- [NO_CODE]: This skill consists entirely of Markdown instructions and documentation files. It does not include scripts, binaries, or package dependencies.
Audit Metadata