energy

Pass

Audited by Gen Agent Trust Hub on Jul 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides structured guidance for energy sector assignments without any malicious instructions or unexpected behaviors.
  • [DATA_EXPOSURE]: The capability contract explicitly prohibits the skill from disclosing confidential information or certifying compliance without authority, aligning with safe operational practices.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external documents such as Terms of Reference (ToR) and solicitations. While this presents an ingestion surface for untrusted data, the skill lacks dangerous capabilities (like network access or shell execution) that would make such an injection exploitable.
  • [CREDENTIALS_UNSAFE]: No hardcoded secrets, API keys, or sensitive configuration files were detected. The skill instructions do not request users to input credentials.
  • [EXTERNAL_DOWNLOADS]: The skill only references local markdown files for sector context and does not attempt to fetch remote scripts or packages.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 28, 2026, 06:11 AM
Security Audit — agent-trust-hub — energy