skills/simota/agent-skills/field/Gen Agent Trust Hub

field

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill's primary function involves analyzing external research data (transcripts, surveys, feedback), which constitutes an inherent surface for indirect prompt injection. Malicious instructions embedded in processed data could potentially bias research findings or synthesis artifacts.
  • Ingestion points: External research data, feedback from Voice, and behavioral signals from Trace are processed across multiple files including SKILL.md and reference/analysis-and-synthesis.md.
  • Boundary markers: The skill relies on structured templates and instructions for researchers to maintain objectivity but does not implement specific technical markers for data isolation in subagent prompts.
  • Capability inventory: The skill is restricted to generating research documentation and triggering subagents for design generation; it is explicitly forbidden from generating implementation code.
  • Sanitization: The instructions require PII anonymization, human verification of thematic coding, and adherence to strict data governance standards (SOC 2 Type II, GDPR).
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 01:49 PM
Security Audit — agent-trust-hub — field