skills/oyi77/1ai-skills/crewai-agents/Gen Agent Trust Hub

crewai-agents

Pass

Audited by Gen Agent Trust Hub on Jun 26, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: Includes a code example for a DatabaseQueryTool that demonstrates how to execute SQL queries using pandas.read_sql. This is presented as an educational pattern for extending agent capabilities.\n- [EXTERNAL_DOWNLOADS]: References the use of SerperDevTool, which is a standard utility for performing web searches via external APIs.\n- [PROMPT_INJECTION]: The skill documents a multi-agent pipeline (Researcher, Writer, Reviewer) where data retrieved from external sources is processed sequentially, creating a surface for indirect instructions.\n
  • Ingestion points: SerperDevTool (web results) and FileReadTool (local file system) in SKILL.md.\n
  • Boundary markers: No explicit instruction-data delimiters are shown in the task templates.\n
  • Capability inventory: File system access via FileReadTool and SQL execution via the custom database tool example.\n
  • Sanitization: No explicit sanitization or validation of data retrieved from external tools is demonstrated in the examples.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 26, 2026, 01:53 PM
Security Audit — agent-trust-hub — crewai-agents