marx-perspective
Pass
Audited by Gen Agent Trust Hub on Apr 24, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill's 'Agentic Protocol' defined in
SKILL.mdrequires the use of tools likeweb searchandfetch_webpageto gather real-world economic data and statistical information. - [COMMAND_EXECUTION]: The
push-to-github.batscript executes standard Git commands (git push) and uses thestartcommand to open a legitimate GitHub repository creation URL in the user's default browser. Additionally,SKILL.mdmentions usingrun_in_terminalto acquire statistical data during the research phase. - [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it ingests untrusted data from external websites via
fetch_webpageandweb search. Evidence inSKILL.mdshows the agent is instructed to process this data to reveal 'contradictions' and 'class dynamics' without explicit boundary markers or sanitization steps to isolate the external content from the agent's core instructions. - [DATA_EXFILTRATION]: While the skill accesses the internet for research, there are no patterns suggesting the exfiltration of sensitive local data. The research results are stored locally in the
references/research/directory as specified inSKILL.md.
Audit Metadata