sales-engineer
Pass
Audited by Gen Agent Trust Hub on Apr 5, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses shell commands to run local Python scripts including rfp_response_analyzer.py, competitive_matrix_builder.py, and poc_planner.py. It also executes inline Python snippets to process JSON results and determine workflow progression.
- [SAFE]: The skill's operations are confined to the local filesystem, processing specific project assets like assets/sample_rfp_data.json and competitive_data.json. No indicators of data exfiltration, network requests to untrusted domains, or credential harvesting were detected.
- [SAFE]: Although the skill ingests data from external JSON files, the risk of indirect prompt injection is mitigated by the lack of network-enabled capabilities and its focus on local business automation. Ingestion points: assets/sample_rfp_data.json; Boundary markers: Absent; Capability inventory: Subprocess script execution; Sanitization: Absent.
Audit Metadata