claim-denial-root-cause
Pass
Audited by Gen Agent Trust Hub on Jun 24, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill processes untrusted external data (healthcare claims, remittance advice, and clinical notes), which creates an attack surface for indirect prompt injection where malicious instructions could be embedded in data files to manipulate the agent's behavior.
- Ingestion points: Defined in
SKILL.mdas 'Denial remittance data', 'Original claim', and 'Clinical documentation'. - Boundary markers: The methodology does not include explicit delimiters or instructions to treat data as untrusted or to ignore embedded commands.
- Capability inventory: No scripts, executable code, or tool call definitions are provided in the skill package.
- Sanitization: There are no instructions for validating, escaping, or sanitizing the content of the input data files.
- [NO_CODE]: No executable scripts, binaries, or code files were found in the skill package; it consists entirely of instructional markdown and a license file.
Audit Metadata