meta-monitoring-evaluation
Pass
Audited by Gen Agent Trust Hub on Apr 18, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No malicious patterns such as 'ignore previous instructions' or safety bypass attempts were detected. The skill uses standard instructional language to guide the agent in generating business reporting frameworks.
- [DATA_EXFILTRATION]: No network tools (curl, wget), hardcoded credentials, or access to sensitive file paths (SSH keys, env files) were identified. The data processed consists of business performance metrics which are handled within the agent's session.
- [REMOTE_CODE_EXECUTION]: No remote code execution patterns or package installations (pip, npm) are present. The skill does not invoke any external scripts or command-line interpreters.
- [COMMAND_EXECUTION]: No shell commands or system-level operations are included in the skill files or metadata.
- [INDIRECT_PROMPT_INJECTION]: The skill processes data from various business plan sections (e.g., sections 04, 07, 08, 10, 13). While this represents a data ingestion surface for external content, the skill lacks any capabilities (network access, file writing, or system modification) that could be exploited via indirect injection. No dangerous capability-data chains exist.
- [OBFUSCATION]: The content is provided in plain-text Markdown. No Base64, hex encoding, zero-width characters, or hidden text patterns were found.
Audit Metadata