learn-verify
Pass
Audited by Gen Agent Trust Hub on Aug 16, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill instructions require the agent to ingest and process content from external sources (websites, textbooks, docs). This creates an attack surface for indirect prompt injection.
- Ingestion points: Data fetched from external URLs or search results during the verification method (SKILL.md).
- Boundary markers: Instructions do not define specific delimiters or ignore-commands for retrieved text.
- Capability inventory: Relies on agent's existing tools for fetching/searching.
- Sanitization: No instructions for sanitizing or validating retrieved content.
Audit Metadata