ppda-uganda
Pass
Audited by Gen Agent Trust Hub on Jul 28, 2026
Risk Level: SAFEPROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
- [PROMPT_INJECTION]: Indirect Prompt Injection Surface. The skill is designed to ingest and process untrusted external data, including buyer solicitations, Terms of Reference (ToR), and proposal drafts, as specified in SKILL.md. There are no explicit instructions or boundary markers provided to ensure the agent disregards potentially malicious instructions embedded in these external documents, nor are there sanitization steps defined for handling such content.
- [DATA_EXFILTRATION]: Local File System Path Exposure. Multiple reference files, including local-government-procurement.md and contract-management-and-payment-linkage.md, contain hardcoded absolute file system paths (e.g., C:\wamp64\www\chwezi-accounting-doctrine) and instruct the agent to treat these as authoritative 'finance engine' resources. This exposes details of the developer's local environment and encourages the agent to attempt to access files outside of the defined skill workspace, which also limits the skill's portability.
Audit Metadata