run-comprehensive-research
Pass
Audited by Gen Agent Trust Hub on Mar 29, 2026
Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructions in
SKILL.mdandreferences/quality-gates.mddirect the agent to use thebashtool to executecurlcommands as a fallback method for fetching web content when primary research tools are unavailable or restricted. - [DATA_EXFILTRATION]: The orchestration workflow involves reading local project documentation, architecture files, and existing research, then incorporating this potentially sensitive local context into mission briefs that are subsequently sent to internet-connected researcher agents.
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it systematically fetches and processes large amounts of untrusted content from external sources (such as forums and community sites) and synthesizes this data into final documentation without explicit sanitization or boundary marking for the ingested content.
Audit Metadata