monte-carlo-asset-health

Pass

Audited by Gen Agent Trust Hub on Jul 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, prompt injections, or obfuscation were detected in the skill instructions. The skill correctly uses dynamic method calls to retrieve environment-specific URLs rather than hardcoding potentially sensitive links.
  • [DATA_EXFILTRATION]: No patterns of sensitive data harvesting or unauthorized network transmission were detected. The skill relies on expected, structured API calls to a defined observability platform via a bundled MCP server.
  • [PROMPT_INJECTION]: The skill ingests external data (alerts, table metadata, lineage) which is a potential surface for indirect prompt injection. However, it implements security best practices by explicitly defining tool boundaries, enforcing a strict reporting template, and prohibiting the agent from inferring or fabricating metrics beyond the provided tool outputs.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 14, 2026, 10:58 AM
Security Audit — agent-trust-hub — monte-carlo-asset-health