cfo-advisor
Pass
Audited by Gen Agent Trust Hub on May 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues or malicious patterns were detected in the analyzed skill.
- [PROMPT_INJECTION]: No evidence of instructions designed to bypass safety filters or override agent behavior was found.
- [DATA_EXFILTRATION]: The skill does not perform any network operations or access sensitive file paths (e.g., credentials, SSH keys). There are no patterns suggesting data exfiltration.
- [REMOTE_CODE_EXECUTION]: No remote script downloads or execution patterns (e.g., curl | bash) are present. All scripts are local and rely solely on the Python standard library.
- [OBFUSCATION]: No obfuscated content, encoded strings, or hidden characters were found in any of the files.
- [COMMAND_EXECUTION]: The skill contains local Python scripts intended for financial modeling. These scripts do not use dangerous functions like eval(), exec(), or subprocess.run() to execute arbitrary commands.
- [CREDENTIALS_UNSAFE]: No hardcoded API keys, tokens, or passwords were found. The skill follows safe practices for handling financial logic.
Audit Metadata