planning-under-uncertainty
Pass
Audited by Gen Agent Trust Hub on Apr 16, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No instructions were found that attempt to override safety guidelines, bypass constraints, or extract system prompts. The skill follows a standard instructional format for strategic planning.
- [DATA_EXFILTRATION]: No sensitive file paths, hardcoded credentials, or unauthorized network operations were identified. The skill's primary function is generating Markdown deliverables within the chat or local filesystem.
- [REMOTE_CODE_EXECUTION]: No remote scripts or binary downloads are present. The skill does not use shell execution patterns (e.g., curl | bash) for runtime operations.
- [OBFUSCATION]: The content is entirely in plain text with no evidence of Base64, hex encoding, zero-width characters, or homoglyph-based evasion techniques.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user-provided initiative contexts to create plans. While this represents a data ingestion surface, the skill lacks dangerous tools (like raw code execution) that could be exploited via injected text. It functions as a text-to-text transformation tool.
- [COMMAND_EXECUTION]: No shell commands, privilege escalation (sudo), or persistence mechanisms (cron, registry) were found in the provided files or templates.
Audit Metadata