provenance-audit

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [Prompt Injection] (SAFE): The skill contains only technical documentation and code examples for auditing; no instructions to override agent behavior were found.
  • [Data Exposure & Exfiltration] (SAFE): No hardcoded credentials, API keys, or sensitive file paths were detected. Network operations in examples are limited to standard API calls.
  • [Remote Code Execution] (SAFE): No patterns for downloading or executing remote scripts or untrusted code are present.
  • [Indirect Prompt Injection] (LOW): The usage example demonstrates interpolating a 'topic' variable into an LLM prompt. While this is a common pattern for AI tasks, it constitutes an ingestion point for untrusted data without explicit sanitization in the example code.
  • [Obfuscation] (SAFE): The content is clear and uses no encoding or hidden characters to mask intent.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:14 PM