prior-art-search
Pass
Audited by Gen Agent Trust Hub on Apr 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill performs research tasks using well-known and reputable external services such as Google Patents, Espacenet, Google Scholar, and arXiv. These operations are consistent with the skill's stated purpose of conducting prior art searches.- [DATA_EXPOSURE]: The skill reads invention descriptions from user input or specific local files (
INVENTION_BRIEF.md). There is no evidence of unauthorized access to sensitive system files, credentials, or environment variables. Information flows primarily from the user/local context to the research report.- [COMMAND_EXECUTION]: Although theBashtool is listed as allowed in the frontmatter, the workflow instructions do not include the execution of arbitrary or dangerous shell commands. The usage of tools is restricted to searching, reading, and writing project-specific documentation.- [PROMPT_INJECTION]: The skill ingests data from external websites viaWebSearchandWebFetch. While this represents a surface for indirect prompt injection, the risk is mitigated by the use of reputable academic and legal databases as sources. No explicit instructions to bypass safety filters or ignore prior instructions were found.
Audit Metadata