financial-document-parser
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- PROMPT_INJECTION (LOW): The skill is susceptible to indirect prompt injection from processed data. * Ingestion points: User-provided financial PDFs, images, and statements (SKILL.md). * Boundary markers: Absent; there are no instructions for the agent to ignore instructions embedded within the processed documents. * Capability inventory: No code execution (eval/exec), network access, or file-writing capabilities were detected in the skill logic. * Sanitization: Absent; the skill does not define methods to escape or validate data extracted from documents.
- NO_CODE (SAFE): No executable code, scripts, or binary files were detected. The skill consists entirely of markdown instructions and static metadata.
Audit Metadata