treatment-plans
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [Indirect Prompt Injection] (LOW): The
check_completeness.pyscript parses untrusted document content and displays extracted strings in a report, which could be used to influence the agent's behavior. \n- Ingestion points:scripts/check_completeness.pyreads user-provided.texand.txtfiles. \n- Boundary markers: The script does not use delimiters or warnings when presenting extracted text to the agent. \n- Capability inventory: The skill has file system access and write capabilities throughscripts/generate_template.py. \n- Sanitization: No sanitization or filtering is applied to text extracted from the input documents.
Audit Metadata