comm-lit-review
Pass
Audited by Gen Agent Trust Hub on Jul 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists exclusively of instructional Markdown files. No executable scripts (Python, JavaScript, shell) or configuration files that trigger code execution were found.
- [DATA_EXPOSURE]: The skill provides guidance for searching academic databases such as IEEE Xplore, ScienceDirect, and ACM Digital Library. These are established, legitimate research platforms. There is no evidence of unauthorized data collection, hardcoded credentials, or exfiltration to suspicious domains.
- [PROMPT_INJECTION]: The instructions are focused on research methodology and output formatting. There are no attempts to bypass safety filters, extract system prompts, or override agent constraints.
- [INDIRECT_PROMPT_INJECTION]: While the skill involves processing untrusted data (search results and research paper content), it lacks dangerous capabilities such as file-system writes, privilege escalation, or arbitrary command execution that would make it vulnerable to indirect injection attacks.
Audit Metadata