production-surveillance
Pass
Audited by Gen Agent Trust Hub on Mar 15, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is designed to process and analyze external production data from SCADA and historian exports provided by users, which creates an indirect prompt injection surface.
- Ingestion points: User-provided CSV or spreadsheet histories (SKILL.md).
- Boundary markers: There are no explicit markers or instructions provided to differentiate between data and potential commands within the ingested files.
- Capability inventory: The skill's functionality is limited to mathematical calculations (GOR, water cut, trend detection) defined in Module 1, 2, and 3. No dangerous capabilities such as network communication, file system modifications, or command execution were found.
- Sanitization: The skill does not perform any sanitization or validation of the input data fields.
Audit Metadata