use-amp-guides-surveys

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes content from Amplitude guides and surveys which can serve as a vector for indirect prompt injection.
  • Ingestion points: The skill retrieves rollout, targeting, and step content via the use_amp_guides_surveys tool referenced in SKILL.md.
  • Boundary markers: Absent. There are no instructions provided to the agent to use delimiters or to ignore potential instructions embedded within the survey data.
  • Capability inventory: The skill utilizes the use_amp_guides_surveys and get_amplitude_context tools to fetch and process project data.
  • Sanitization: The instructions do not define any escaping, validation, or filtering of the content returned from the external Amplitude services.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 02:13 AM
Security Audit — agent-trust-hub — use-amp-guides-surveys