customer-research
Pass
Audited by Gen Agent Trust Hub on Aug 11, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill facilitates the ingestion of external data (e.g., from interviews, Reddit, or reviews) to synthesize a customer profile in
MY-ICP.md. This creates an indirect prompt injection surface where malicious instructions embedded in the analyzed text could influence the agent's output during synthesis. The risk is considered low because the skill lacks high-privilege capabilities like network access or system-level command execution that would be necessary for a more serious exploit.
Audit Metadata