crossframe-essay
Pass
Audited by Gen Agent Trust Hub on Jul 5, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill processes untrusted user input and external data from web searches, which constitutes an indirect prompt injection surface. The skill mitigates this risk by requiring a mandatory 'Source Ledger' workflow and establishing 'Evidence Boundaries' to prevent external content from overriding the agent's core reasoning logic as defined in SKILL.md.
- [SAFE]: The skill does not contain hardcoded credentials, malicious persistence mechanisms, or unauthorized privilege escalation attempts. Its operations are focused on text generation and structured analytical processes.
Audit Metadata