company-narrative-skill

Pass

Audited by Gen Agent Trust Hub on Aug 4, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: No security issues were detected. The skill provides structure for company storytelling and does not include any scripts, hardcoded credentials, or persistence mechanisms.
  • [PROMPT_INJECTION]: The skill processes untrusted data from a knowledge base and web search, which is a surface for indirect prompt injection. This is evaluated as safe because the skill does not have access to high-impact tools that could be exploited via malicious input. Ingestion points: context/company.md, knowledge base files, and web search results. Boundary markers: Absent. Capability inventory: Limited to text generation; no allowed-tools are specified for file or system access. Sanitization: Absent.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 4, 2026, 11:32 AM
Security Audit — agent-trust-hub — company-narrative-skill