research-proposal
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill utilizes the
WebFetchtool to retrieve academic metadata and scholarly content from reputable platforms, including Crossref, arXiv, and PubMed, during the literature collection phase. - [INDIRECT_PROMPT_INJECTION]: The skill ingests data from external websites and user research libraries, creating a vulnerability surface for indirect prompt injection.
- Ingestion points: Content fetched via
WebSearchandWebFetchfrom academic repositories, and paper metadata or annotations accessed through Zotero integration tools. - Boundary markers: The skill does not define explicit delimiters to separate retrieved scholarly data from internal instructions.
- Capability inventory:
Read,Write,Edit,Glob,Grep, and Zotero-specific library management tools. - Sanitization: No specific filtering or sanitization measures are mentioned for data obtained from external research platforms.
Audit Metadata