compliance-gap-analyzer
Pass
Audited by Gen Agent Trust Hub on Aug 22, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill instructions define a purely logic-based reporting framework for compliance audits. No evidence of malicious patterns, obfuscation, or unauthorized data access was found.
- [NO_CODE]: The skill consists entirely of markdown instructions and does not include any Python, Node.js, or shell scripts, significantly reducing the attack surface.
- [SAFE]: The skill ingests untrusted data in the form of audit findings (Step 1). While it lacks explicit boundary markers or sanitization, it has no exploitable capabilities such as tool access, file system writes, or network operations, which effectively eliminates the risk of indirect prompt injection.
Audit Metadata