deep-agent-review
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- [Prompt Injection] (SAFE): The specialist profiles contain behavioral guidelines for AI agents. These are standard instructions defining task scope and do not attempt to bypass safety filters or extract system information.
- [Data Exposure & Exfiltration] (SAFE): No hardcoded credentials, sensitive file access, or network transmission capabilities were found. The mention of 'sk-' in the schema is a descriptive example of a vulnerability type, not an actual secret.
- [Remote Code Execution] (SAFE): The skill contains no scripts or commands that download or execute external code.
- [Command Execution] (SAFE): No shell commands, subprocess calls, or privileged operations are present in the files.
- [Indirect Prompt Injection] (SAFE): The skill provides structured templates for analyzing external data but does not contain vulnerabilities that would allow external content to escalate privileges or perform unauthorized actions.
Audit Metadata