workflow-business-evaluation

Pass

Audited by Gen Agent Trust Hub on Mar 21, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill's workflow depends on external data ingestion, which presents a surface for indirect prompt injection.
  • Ingestion points: Data is retrieved from the web using the /web-research and /deep-research commands specified in SKILL.md.
  • Boundary markers: No explicit delimiters or instructions are used to isolate untrusted web content from the agent's core instructions.
  • Capability inventory: The workflow automates a sequence of analytical tasks such as market analysis and business viability evaluation based on the ingested content.
  • Sanitization: The skill does not implement validation or filtering of the external research results before they are processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 21, 2026, 03:49 AM