hypothesis-framing
Pass
Audited by Gen Agent Trust Hub on Sep 4, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists exclusively of markdown documentation and natural language instructions. It does not include any referenced scripts, executables, or tool configurations that could interact with the underlying system.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user-provided research questions and intuitions. While this is an ingestion point for untrusted data, the skill possesses no capabilities—such as file writing, shell command execution, or network requests—that could be exploited via malicious inputs. The risk is mitigated by the lack of any execution tools.
- [DATA_EXPOSURE_AND_EXFILTRATION]: No patterns were detected involving access to sensitive file paths, environment variables, or credentials. There are no network operations (e.g., curl, wget) present in the skill instructions.
- [REMOTE_CODE_EXECUTION]: There is no evidence of external package installation or remote script execution. The skill does not use any platform-specific command execution syntax.
Audit Metadata