crisis-monitor

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill implements a controlled workflow using a tool-description and tool-call gateway to interact with SandBase platform capabilities. This read-only approach minimizes the risk of unauthorized or harmful actions.
  • [INDIRECT_PROMPT_INJECTION]: The skill has a data ingestion surface from external sources including Twitter, Reddit, and various news sites. 1. Ingestion points: External search results from Twitter, Reddit, Weibo, and Google News as described in SKILL.md. 2. Boundary markers: Absent; the skill instructions do not provide specific delimiters or ignore-instructions for the processed external data. 3. Capability inventory: The skill is limited to information retrieval and synthesis; it does not possess capabilities for file-system modifications, arbitrary command execution, or outbound network calls outside of the tool gateway. 4. Sanitization: No explicit sanitization or filtering logic is defined for the ingested social media content.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 11:31 PM
Security Audit — agent-trust-hub — crisis-monitor