tax-strategy-optimizer

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • Prompt Injection (SAFE): No instructions were found that attempt to override the AI's safety protocols or bypass system constraints. The instructions are focused on tax advisory persona adoption.- Data Exposure & Exfiltration (SAFE): The skill does not contain any commands for network requests (curl, wget) or local file access. No hardcoded credentials or sensitive paths were identified.- Unverifiable Dependencies & Remote Code Execution (SAFE): There is no code (Python, Node.js, or Shell) included in the skill. No remote scripts are downloaded or executed.- Privilege Escalation & Persistence (SAFE): No system-level commands, service installations, or persistence mechanisms (cron jobs, startup scripts) are present.- Indirect Prompt Injection (SAFE): Although the skill is designed to process user-provided financial information, it lacks the necessary capabilities (such as tool calling, code execution, or network egress) to be exploited through malicious data ingestion.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 05:55 PM