sales-checkout

Pass

Audited by Gen Agent Trust Hub on Apr 17, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill implements a persistent learning mechanism by reading and appending to reference files. Ingestion points: Untrusted data enters the context from learnings.md and user input. Boundary markers: Absent. The skill does not use delimiters to isolate stored learnings from instructions. Capability inventory: File read and append operations on local reference files. No network or shell execution capabilities were detected. Sanitization: Absent. Content is appended to the reference file without validation or escaping.
  • [NO_CODE]: This skill consists entirely of Markdown instructions and reference documentation; no executable scripts or binary files are included.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 17, 2026, 06:17 PM