profit-analysis
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns detected. The skill contains purely instructional markdown and templates for financial reporting.
- [DATA_EXPOSURE]: The skill reads from a local configuration file
../../CLAUDE.md. This is a standard practice for defining project-level context and does not involve unauthorized access to sensitive system files or credentials. - [INDIRECT_PROMPT_INJECTION]: The skill processes data from an external ERP system. Although this is an ingestion point for untrusted data, the skill does not possess any exploitable capabilities such as shell execution, network requests, or file-writing tools that could be leveraged by an indirect injection attack.
Audit Metadata