auction-first-price-shading

Pass

Audited by Gen Agent Trust Hub on Aug 10, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is composed strictly of documentation, mathematical derivations, and input validation rules. It contains no executable scripts (Python, Node.js, or Shell) or binary files.\n- [PROMPT_INJECTION]: Analysis of the instructions and examples reveals no attempts to override system prompts, bypass safety filters, or use adversarial personas (e.g., DAN). The instructions focus exclusively on auction theory and bid shading logic.\n- [DATA_EXFILTRATION]: There are no network-capable commands (such as curl, wget, or fetch) or logic that could exfiltrate sensitive information from the execution environment.\n- [CREDENTIALS_UNSAFE]: No hardcoded API keys, passwords, or private tokens were detected. The skill uses a deterministic input contract for mathematical parameters (values, bidder counts, etc.).\n- [REMOTE_CODE_EXECUTION]: The skill does not perform any external downloads or use dynamic execution patterns like eval or exec. It operates as a set of logical instructions for the AI agent to follow within its own reasoning framework.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 10, 2026, 01:27 PM
Security Audit — agent-trust-hub — auction-first-price-shading