learn-verify

Pass

Audited by Gen Agent Trust Hub on Aug 16, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill instructions require the agent to ingest and process content from external sources (websites, textbooks, docs). This creates an attack surface for indirect prompt injection.
  • Ingestion points: Data fetched from external URLs or search results during the verification method (SKILL.md).
  • Boundary markers: Instructions do not define specific delimiters or ignore-commands for retrieved text.
  • Capability inventory: Relies on agent's existing tools for fetching/searching.
  • Sanitization: No instructions for sanitizing or validating retrieved content.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 16, 2026, 12:51 PM
Security Audit — agent-trust-hub — learn-verify