research
Pass
Audited by Gen Agent Trust Hub on Aug 28, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes data from external primary sources which introduces a risk of indirect prompt injection. Ingestion points: The agent reads from official documentation, source code, and APIs (SKILL.md). Boundary markers: The skill lacks boundary markers or instructions to disregard potential commands within the researched materials. Capability inventory: The agent is authorized to write findings to Markdown files within the repository (SKILL.md). Sanitization: No sanitization or input validation is specified for the researched content.
Audit Metadata