fsi-comps-analysis
Pass
Audited by Gen Agent Trust Hub on Apr 7, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it instructs the agent to process data from external sources and the web without defining safety boundaries.
- Ingestion points: Financial data is retrieved from external sources such as S&P Kensho MCP, FactSet MCP, Daloopa MCP, Bloomberg Terminal, SEC EDGAR filings, and general web search results.
- Boundary markers: The instructions do not specify any delimiters or safety warnings to ignore instructions that might be embedded in the retrieved financial data.
- Capability inventory: The agent uses data retrieval tools and possesses the capability to generate complex Excel spreadsheets with formulas.
- Sanitization: There are no protocols defined for the agent to sanitize or validate external content before using it in the analysis.
Audit Metadata