Offer Letter Generator
Pass
Audited by Gen Agent Trust Hub on Mar 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a template-based utility for HR tasks. It does not perform network operations, access sensitive system files, or execute shell commands.
- [PROMPT_INJECTION]: The skill exhibits a surface for indirect prompt injection as it processes user-provided text into document templates.
- Ingestion points: User-provided fields such as 'Candidate Name', 'Job Title', and 'Compensation' described in
SKILL.md. - Boundary markers: Absent. There are no explicit instructions for the agent to delimit or ignore instructions that might be embedded within the user-provided data.
- Capability inventory: The skill uses the
office-mcpserver toolscreate_docx,fill_docx_template, anddocx_to_pdfto generate files. - Sanitization: No specific sanitization or validation instructions are provided for the user inputs.
Audit Metadata