prior-art-search

Pass

Audited by Gen Agent Trust Hub on May 4, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill implements a professional and legitimate framework for patentability assessment using public patent data from Google BigQuery. \n- [EXTERNAL_DOWNLOADS]: The skill relies on official Python packages including google-cloud-bigquery and db-dtypes. These are well-known libraries from a trusted organization (Google) used as intended for cloud data retrieval. \n- [SAFE]: Authentication instructions follow industry best practices by directing users to use the official Google Cloud CLI (gcloud) for secure credential management, avoiding hardcoded secrets. \n- [COMMAND_EXECUTION]: The skill utilizes bash commands to execute local Python search scripts. This behavior is transparent, consistent with the tool's stated purpose, and occurs within the scope defined in the skill metadata. \n- [PROMPT_INJECTION]: The skill accepts untrusted user input describing inventions in Step 1 of SKILL.md. While it lacks explicit boundary markers or sanitization for this data, the ingestion is necessary for its primary function, and the associated capabilities (Bash, Read, Write) are scoped to patent search and reporting tasks.
Audit Metadata
Risk Level
SAFE
Analyzed
May 4, 2026, 06:46 PM