payment-integration
Pass
Audited by Gen Agent Trust Hub on Feb 15, 2026
Risk Level: LOWNO_CODE
Full Analysis
- [NO_CODE] (SAFE): The skill consists entirely of markdown documentation and decision frameworks. No executable scripts, binaries, or configuration files are present in the provided file.
- [Indirect Prompt Injection] (INFO): The skill identifies a potential injection surface as it processes untrusted user data regarding payment workflows. 1. Ingestion point: User prompts containing payment-related triggers defined in SKILL.md. 2. Boundary markers: Absent. 3. Capability inventory: Documentation and reasoning only; no subprocess, network, or file system write capabilities. 4. Sanitization: Absent. Given the lack of executable capabilities, the severity is classified as INFO.
Audit Metadata