credit-risk-explanation

Pass

Audited by Gen Agent Trust Hub on Aug 21, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill processes untrusted external data including borrower financials, risk scores, and macro scenarios. It lacks explicit delimiters or instructions for the agent to ignore potential commands embedded within this data.
  • [PROMPT_INJECTION]: Evidence Chain: (1) Ingestion points: 'Borrower/segment data', 'Risk rating', and 'Macro scenario' defined in SKILL.md. (2) Boundary markers: None identified in the prompt instructions to delineate external data from system instructions. (3) Capability inventory: The skill is designed for narrative generation and text analysis; no shell commands, file system writes, or network operations are present across the provided files. (4) Sanitization: No input validation, escaping, or filtering of external content is specified.
  • [NO_CODE]: The skill contains no executable scripts, binaries, or source code files, consisting entirely of markdown instructions and license documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 21, 2026, 02:38 PM
Security Audit — agent-trust-hub — credit-risk-explanation