NYC

financial-document-parser

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • PROMPT_INJECTION (LOW): The skill is susceptible to indirect prompt injection from processed data. * Ingestion points: User-provided financial PDFs, images, and statements (SKILL.md). * Boundary markers: Absent; there are no instructions for the agent to ignore instructions embedded within the processed documents. * Capability inventory: No code execution (eval/exec), network access, or file-writing capabilities were detected in the skill logic. * Sanitization: Absent; the skill does not define methods to escape or validate data extracted from documents.
  • NO_CODE (SAFE): No executable code, scripts, or binary files were detected. The skill consists entirely of markdown instructions and static metadata.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:26 PM