cfo-advisor

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues or malicious patterns were detected in the analyzed skill.
  • [PROMPT_INJECTION]: No evidence of instructions designed to bypass safety filters or override agent behavior was found.
  • [DATA_EXFILTRATION]: The skill does not perform any network operations or access sensitive file paths (e.g., credentials, SSH keys). There are no patterns suggesting data exfiltration.
  • [REMOTE_CODE_EXECUTION]: No remote script downloads or execution patterns (e.g., curl | bash) are present. All scripts are local and rely solely on the Python standard library.
  • [OBFUSCATION]: No obfuscated content, encoded strings, or hidden characters were found in any of the files.
  • [COMMAND_EXECUTION]: The skill contains local Python scripts intended for financial modeling. These scripts do not use dangerous functions like eval(), exec(), or subprocess.run() to execute arbitrary commands.
  • [CREDENTIALS_UNSAFE]: No hardcoded API keys, tokens, or passwords were found. The skill follows safe practices for handling financial logic.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 01:52 AM
Security Audit — agent-trust-hub — cfo-advisor