cash-flow-forecast

Pass

Audited by Gen Agent Trust Hub on Apr 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs legitimate financial analysis by processing transaction history to create cash flow projections. This behavior is consistent with its stated purpose and does not involve unauthorized data access or system modifications.
  • [PROMPT_INJECTION]: The skill exhibits an attack surface for indirect prompt injection as it processes external transaction data, though it lacks the capabilities required for exploitation.
  • Ingestion points: Historical transactions and spending summaries retrieved from external financial data tools (SKILL.md).
  • Boundary markers: No specific delimiters or instructions to ignore embedded commands are used when processing transaction descriptions.
  • Capability inventory: The skill's actions are limited to data analysis and text-based report generation; it lacks tools for network communication, file system writes, or shell command execution.
  • Sanitization: No input validation or sanitization of transaction data is specified in the workflow.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 14, 2026, 01:50 PM