trading-strategist

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill focuses on quantitative trading strategy development. All identified behaviors align with its stated purpose of defining entry/exit rules and performing backtesting.
  • [SAFE]: The skill exports strategy reports to Notion using the notion:createPage tool. This is a legitimate integration with a well-known service for documentation, as specified in the skill's description.
  • [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it ingests untrusted market data for analysis. 1. Ingestion points: getData function calls in SKILL.md for historical price data. 2. Boundary markers: None present to distinguish data from instructions. 3. Capability inventory: Includes notion:createPage, network, and fs access. 4. Sanitization: No explicit sanitization of ingested data is shown in the examples. Given the data type (market metrics) and the primary purpose, this is considered a low-risk architectural characteristic.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 05:49 AM
Security Audit — agent-trust-hub — trading-strategist