hypothesis-generation
Pass
Audited by Gen Agent Trust Hub on Jun 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of markdown-based instructions, reference materials, and output templates. No executable scripts, binaries, or configuration files that could trigger system operations were found.
- [COMMAND_EXECUTION]: There are no shell commands or system-level execution patterns in any of the provided files. The skill is purely informational.
- [DATA_EXFILTRATION]: No access to sensitive file paths (~/.ssh, .env, etc.) or hardcoded credentials was detected. The network operations described are limited to using standard tools like
WebSearchandWebFetchfor retrieving scientific literature from established domains like PubMed. - [PROMPT_INJECTION]: The instructions do not contain any patterns intended to override agent behavior, bypass safety filters, or extract system prompts. The language remains professional and focused on scientific methodology.
- [INDIRECT_PROMPT_INJECTION]: The skill identifies an ingestion surface where the agent processes external data (scientific papers and search results). While this technically allows for indirect injection if an external source contains malicious instructions, the risk is categorized as low due to the lack of high-privilege capabilities (like file system writes or code execution) being combined with the data processing.
Audit Metadata