skills/swan-gtm/gtm-skills/research/Gen Agent Trust Hub

research

Pass

Audited by Gen Agent Trust Hub on Jul 28, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill retrieves research data from diverse external sources, including LinkedIn profiles, G2 reviews, and corporate domains via swan-fetch-scraped-url. This is a core functionality for the intended purpose of company and persona research.
  • [COMMAND_EXECUTION]: The agent is instructed to use swan-execute-code to process large tool outputs. It generates Python scripts using libraries such as pandas (for data aggregation) and beautifulsoup4 (for HTML parsing) to synthesize retrieved data into structured reports.
  • [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface as it ingests and processes untrusted data from external websites. * Ingestion points: Scraping instructions across all sub-pages in the references/ directory. * Boundary markers: Not explicitly defined in instructions. * Capability inventory: Access to swan-execute-code and swan-update-company. * Sanitization: No explicit sanitization or content filtering is defined beyond the agent's summarization instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 28, 2026, 04:39 PM
Security Audit — agent-trust-hub — research