skills/xyaz1313/xyskill/xy-close/Gen Agent Trust Hub

xy-close

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses a provided Python script (scripts/atoms-search.py) to search a database of sales strategies and case studies. This is a primary functional feature of the skill.
  • [EXTERNAL_DOWNLOADS]: The search script performs network requests to a vendor-controlled API (https://api.xyskill.xyz) to retrieve search results. This is a documented retrieval mechanism and does not interact with sensitive user data.
  • [INDIRECT_PROMPT_INJECTION]: The skill retrieves data from external files or a remote API and integrates it into the conversation context. This presents a potential surface for indirect prompt injection.
  • Ingestion points: Data returned by the scripts/atoms-search.py tool.
  • Boundary markers: The instructions in SKILL.md guide the agent to cite source IDs but do not employ strict delimiters for the retrieved content.
  • Capability inventory: The agent can execute the scripts/atoms-search.py script and read local knowledge files via that script.
  • Sanitization: No specific sanitization or filtering of the content retrieved by scripts/atoms-search.py is performed before interpolation into the prompt.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 05:23 AM
Security Audit — agent-trust-hub — xy-close