pricing-strategy

Pass

Audited by Gen Agent Trust Hub on May 7, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references an external Model Context Protocol (MCP) server at https://mcp.credyt.ai. This is a vendor-owned resource belonging to the skill author ('credyt').
  • [COMMAND_EXECUTION]: Provides an installation command npx add-mcp https://mcp.credyt.ai for setting up the recommended tool. This is a standard configuration step for the author's service.
  • [PROMPT_INJECTION]: The skill includes a feature to render user-provided pricing strategies into HTML or PDF format. This creates a surface for indirect prompt injection if malicious data is provided by the user, but the risk is low as it is intended for the user's own visualization.
  • Ingestion points: User responses to product and pricing questions in SKILL.md.
  • Boundary markers: Not explicitly defined for the HTML rendering output.
  • Capability inventory: HTML and PDF rendering capabilities mentioned in SKILL.md.
  • Sanitization: Not explicitly mentioned in the instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
May 7, 2026, 05:25 AM