predictable-revenue

Warn

Audited by Gen Agent Trust Hub on Apr 4, 2026

Risk Level: MEDIUMPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: Deceptive execution instructions in SKILL.md. The skill's primary content and metadata describe the "Predictable Revenue" B2B sales framework. However, the Instructions section (lines 280-286) directs the agent to "Assess the current state of the CI/CD configuration" and "Apply the recommended patterns from this skill" to that configuration. This is a direct contradiction that could cause the agent to attempt to modify sensitive project infrastructure (like GitHub Actions or Jenkins files) based on sales methodologies, leading to broken or nonsensical configurations.
  • [PROMPT_INJECTION]: Misleading resource references. The Output and Resources sections in SKILL.md (lines 288-315) refer to "CI/CD implementation details" and "Official CI/CD documentation," which are entirely unrelated to the provided sales documentation. The internal link to ${CLAUDE_SKILL_DIR}/references/implementation.md is labeled "CI/CD implementation details" but points to a sales guide. This indicates the skill was built using an inappropriate template or contains deceptive instructions that override the intended safe behavior of the agent.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 4, 2026, 12:38 PM