ajtbd-landing
Pass
Audited by Gen Agent Trust Hub on Mar 5, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it ingests data from local research files without sanitization.
- Ingestion points: The skill reads research data from
.ajtbd/segments.mdand.ajtbd/job-graph.mdusing theReadtool. - Boundary markers: There are no specified boundary markers or delimiters to differentiate between the research data and the system instructions during processing.
- Capability inventory: The skill is granted powerful capabilities including
Read,Write,Glob,Bash, andWebSearchtools. - Sanitization: No sanitization, escaping, or validation of the ingested file content is performed, allowing potentially malicious instructions in the source files to influence agent behavior.
Audit Metadata