forecast-generator

Pass

Audited by Gen Agent Trust Hub on Feb 18, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [Prompt Injection] (SAFE): No instructions were found that attempt to override system prompts or bypass safety guidelines.
  • [Data Exposure & Exfiltration] (SAFE): No hardcoded secrets, sensitive file paths, or network exfiltration patterns were detected.
  • [Obfuscation] (SAFE): The content is clear markdown with no signs of Base64, zero-width characters, or hidden encoding.
  • [Unverifiable Dependencies & Remote Code Execution] (SAFE): No package managers (pip, npm) or remote script execution patterns (curl | bash) are used.
  • [Privilege Escalation] (SAFE): While the skill metadata requests the 'Bash' tool, there is no code provided that attempts to escalate privileges or perform unauthorized system modifications.
  • [Indirect Prompt Injection] (LOW): The skill is intended for data analytics, which involves processing external data. While it lacks explicit boundary markers for untrusted input, no actual implementation code exists to be exploited.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 18, 2026, 05:56 PM