analytics-pro
Pass
Audited by Gen Agent Trust Hub on Apr 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows standard implementation patterns for its stated purpose.
- [DATA_EXFILTRATION]: All network operations are directed to the official API (api.analyticspro.com) and the vendor's payment facilitator (facilitator.402.md).
- [PROMPT_INJECTION]: The skill ingests data from external API endpoints, creating a potential indirect prompt injection surface. 1. Ingestion points: /v1/traffic and /v1/conversions (SKILL.md). 2. Boundary markers: Absent. 3. Capability inventory: None (the skill lacks dangerous capabilities like shell execution or file-system access). 4. Sanitization: Absent. The lack of exploitable tools renders this surface safe.
Audit Metadata