skills/pollow/c-suite-skills/cto/Gen Agent Trust Hub

cto

Pass

Audited by Gen Agent Trust Hub on Mar 7, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No attempts to override safety guidelines, bypass constraints, or extract system prompts were detected. The instructions are purely functional for the CTO role.- [DATA_EXFILTRATION]: The skill does not contain any commands to access sensitive file paths (e.g., .ssh, .env) or perform network operations to external domains. References to API keys are correctly directed to a human agenda for manual setup.- [REMOTE_CODE_EXECUTION]: There are no patterns involving the download and execution of remote scripts or the installation of unverified third-party packages.- [COMMAND_EXECUTION]: The skill does not utilize subprocess calls, shell commands, or dynamic code execution (eval/exec) patterns.- [INDIRECT_PROMPT_INJECTION]: While the skill performs technology research via web search (Category 8c), which constitutes an ingestion surface for untrusted external data, there are no capabilities within the skill's own code that would allow for high-risk exploitation of such data. The risk is considered negligible given the advisory nature of the output.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 7, 2026, 11:50 PM