statistical-analysis

Pass

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: LOWNO_CODE
Full Analysis
  • [Category 8: Indirect Prompt Injection] (INFO): The skill relies on external reference files (references/patterns.md, references/sharp_edges.md, references/validations.md) to define its behavior. While this represents a data ingestion surface, the skill lacks any 'write', 'execute', or 'network' capabilities, meaning the impact of potentially malicious content in those files is limited to influencing the agent's textual responses.
  • [Category 7: Metadata Poisoning] (LOW): The description contains a trailing quote sequence ('Use when ", " mentioned.'). While this may be a typo or a strange activation trigger attempt, it does not represent a functional security threat in this context.
  • [Category 4: Unverifiable Dependencies] (SAFE): No external Python or Node.js packages are required or installed. All operations are handled through natural language instructions.
Audit Metadata
Risk Level
LOW
Analyzed
Feb 16, 2026, 03:07 AM