survey
Pass
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill utilizes the
WebFetchtool to retrieve information from external websites for landscape research.\n- [COMMAND_EXECUTION]: The skill requests permission to use theBashtool, which allows for the execution of shell commands on the system.\n- [PROMPT_INJECTION]: The skill processes untrusted web data, creating an indirect prompt injection surface.\n - Ingestion points: Web content retrieved via
WebFetchin research lanes (Step 1).\n - Boundary markers: No explicit delimiters or instructions are used to separate external data from system prompts.\n
- Capability inventory: The skill has access to
Bash,Write,Read, andWebFetchtools.\n - Sanitization: The skill does not specify any sanitization or validation of content fetched from the web.
Audit Metadata