deep-reading-analyst

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to analyze untrusted external articles, papers, and URLs provided by users or retrieved via web searches, which represents a potential surface for indirect prompt injection.\n
  • Ingestion points: Data enters the context during the Structural Understanding phase in SKILL.md and through multi-source comparison tasks.\n
  • Boundary markers: The skill instructions do not specify the use of strict delimiters or explicit warnings to ignore instructions within the ingested text.\n
  • Capability inventory: The skill utilizes the web_search tool to fetch external data for analysis.\n
  • Sanitization: No input validation or content filtering mechanisms are defined in the instructions.\n- [SAFE]: The skill implements benign educational and analytical frameworks for cognitive development. No suspicious command execution, hardcoded credentials, persistence mechanisms, or obfuscation techniques were detected across the provided files.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 02:27 AM
Security Audit — agent-trust-hub — deep-reading-analyst