analyze-results

Pass

Audited by Gen Agent Trust Hub on Mar 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is vulnerable to indirect prompt injection through the analysis of potentially untrusted experimental data.
  • Ingestion points: The skill reads JSON and CSV files from directories such as results/ and figures/ (SKILL.md).
  • Boundary markers: Absent. The instructions do not provide delimiters or warnings to ignore instructions that might be embedded within the data files.
  • Capability inventory: The skill allows use of high-privilege tools including Bash(*), Write, and Edit (SKILL.md).
  • Sanitization: Absent. There is no requirement for the agent to sanitize or validate the content of the data files before processing or generating insights.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 17, 2026, 02:39 AM
Security Audit — agent-trust-hub — analyze-results