analyze-results
Pass
Audited by Gen Agent Trust Hub on Mar 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is vulnerable to indirect prompt injection through the analysis of potentially untrusted experimental data.
- Ingestion points: The skill reads JSON and CSV files from directories such as
results/andfigures/(SKILL.md). - Boundary markers: Absent. The instructions do not provide delimiters or warnings to ignore instructions that might be embedded within the data files.
- Capability inventory: The skill allows use of high-privilege tools including
Bash(*),Write, andEdit(SKILL.md). - Sanitization: Absent. There is no requirement for the agent to sanitize or validate the content of the data files before processing or generating insights.
Audit Metadata