binlee-public-communication

Pass

Audited by Gen Agent Trust Hub on Jul 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security risks were identified. The skill is primarily instructional and operates within a controlled environment, using local markdown files for knowledge retrieval.
  • [PROMPT_INJECTION]: The skill has an indirect prompt injection surface because it ingests data from an external file (../binlee-source-library/references/evidence-policy.md). While an attacker who controls that file could attempt to influence the agent's output, the skill lacks dangerous capabilities (such as code execution or network access) that would allow for higher-impact exploitation.
  • Ingestion points: The workflow in SKILL.md explicitly reads a file from a relative path outside the skill directory.
  • Boundary markers: No explicit delimiters or instructions are provided to the agent to ignore potentially malicious content within the policy file.
  • Capability inventory: The skill is limited to text generation and does not utilize tools for file system modification, shell execution, or network requests.
  • Sanitization: No evidence of sanitization or validation of the input file content was found.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 16, 2026, 01:23 AM
Security Audit — agent-trust-hub — binlee-public-communication