NYC

user-research-analysis

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [Indirect Prompt Injection] (LOW): The skill is designed to process untrusted data from interviews and surveys, which could potentially contain malicious instructions intended to manipulate the agent. 1. Ingestion points: The 'interviews' and 'survey_responses' parameters within the Python and JavaScript classes in 'SKILL.md'. 2. Boundary markers: No clear delimiters or system instructions are provided to the agent to ignore potentially malicious embedded content in the research data. 3. Capability inventory: The skill does not possess high-risk capabilities such as network access, file system modification, or arbitrary command execution. 4. Sanitization: There is no logic present to sanitize or filter the content of the research statements before they are processed.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 05:11 PM