event-portfolio-strategy
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill package is composed exclusively of Markdown documentation and JSON evaluation files.
- There are no Python scripts, Node.js files, shell scripts, or binary executables included.
- The skill logic resides entirely within natural language instructions provided to the agent.
- [SAFE]: No security threats were detected during the analysis of the skill's content.
- [PROMPT_INJECTION]: The instructions do not contain patterns attempting to bypass safety filters or override system instructions. The language is purely functional and focused on the event management domain.
- [EXTERNAL_DOWNLOADS]: No remote URLs or external script downloads were found. Skill references (e.g.,
samber/dev-event-organizer-skills@event-budget) are internal to the platform and the specified vendor. - [DATA_EXFILTRATION]: There are no network operations, hardcoded credentials, or attempts to access sensitive file paths (e.g.,
.ssh,.env). - [OBFUSCATION]: The content was scanned for Base64, zero-width characters, and homoglyphs; no hidden content or deceptive formatting was found.
- [INDIRECT_PROMPT_INJECTION]: While the skill ingests user input regarding event details, it lacks any high-risk capabilities (such as shell execution, file writing, or API calls) that could be leveraged as a sink for injection attacks.
Audit Metadata