call-prep

Pass

Audited by Gen Agent Trust Hub on Apr 7, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: No malicious command execution, unauthorized data exfiltration patterns, or obfuscation techniques were detected in the skill instructions. The skill operates within the expected scope of a sales productivity tool.- [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface as it is designed to ingest and process data from external, potentially untrusted sources such as web search results and email threads.
  • Ingestion points: Web search results (Step 2), external email threads (Step 1), and internal chat mentions (Step 1).
  • Boundary markers: Absent; there are no instructions to the agent to ignore instructions embedded within the retrieved data.
  • Capability inventory: Data synthesis and generation of formatted markdown reports.
  • Sanitization: No explicit sanitization or filtering of external content is described.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 7, 2026, 03:21 PM
Security Audit — agent-trust-hub — call-prep