cash-flow-forecasting
Pass
Audited by Gen Agent Trust Hub on Mar 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is primarily instructional, guiding users on how to gather data from ecommerce platforms like Shopify and WooCommerce to build 13-week cash flow models. The instructions are benign and follow standard financial planning best practices.
- [SAFE]: The provided evaluation tasks (evals) define requirements for generating Python scripts that perform statistical forecasting and financial modeling. The libraries requested (pandas, numpy, statsmodels) are standard industry tools for data science.
- [INDIRECT_PROMPT_INJECTION]: The skill describes ingesting external data (CSV exports) from third-party ecommerce platforms. While this creates a theoretical surface for indirect prompt injection, it is the intended primary purpose of the skill for data analysis. No specific vulnerabilities were identified in the instructional content.
- Ingestion points: CSV exports from Shopify, WooCommerce, and BigCommerce (SKILL.md).
- Boundary markers: Not explicitly defined in the instructional text.
- Capability inventory: Use of Python for data processing and forecasting (statsmodels, pandas).
- Sanitization: The instructions focus on manual or standard tool-based data handling and do not include specific sanitization logic.
Audit Metadata