blog-strategy
Pass
Audited by Gen Agent Trust Hub on May 5, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: Indirect Prompt Injection Surface. The skill requires the agent to ingest and analyze external content via web search to perform competitive analysis.\n
- Ingestion points: External data from web searches for competitor blog content and AI citation responses in
SKILL.md(Step 2 and Step 5.5).\n - Boundary markers: Absent. There are no instructions to use delimiters or ignore embedded instructions when processing content from the web.\n
- Capability inventory: The skill is primarily designed for generating strategy documents but mentions the use of other tools such as
/blog analyzeand/blog write.\n - Sanitization: Absent. There is no specified mechanism for validating or sanitizing the data retrieved from external sources before it is processed by the agent.
Audit Metadata