injury-report-tracker
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOWNO_CODE
Full Analysis
- [Prompt Injection] (SAFE): The instructions are purely functional for sports analysis and do not contain directives to bypass safety filters or extract system prompts.
- [Data Exposure & Exfiltration] (SAFE): There are no commands or code blocks that access the file system, environment variables, or perform network requests.
- [Remote Code Execution] (SAFE): No remote scripts or external code execution patterns were found.
- [Indirect Prompt Injection] (LOW): The skill is designed to process external injury news; however, since it lacks defined tools (APIs, scrapers, or subprocesses) to ingest that data, the technical attack surface is non-existent within the skill definition itself.
- [Persistence & Privilege Escalation] (SAFE): No mechanisms for maintaining access or acquiring elevated permissions are present.
Audit Metadata