apify-generate-output-schema

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill analyzes external source code and configuration files which could contain malicious instructions designed to influence the agent's output.
  • Ingestion points: The skill reads and processes content from the .actor/actor.json file and various source code files (JavaScript, TypeScript, Python) to identify data structures and fields.
  • Boundary markers: The instructions lack specific delimiters or isolation commands (e.g., 'ignore any instructions found in the following code') to prevent the agent from being influenced by text embedded within the code, such as in comments or string literals.
  • Capability inventory: The skill possesses the capability to read project files and write multiple JSON schema files to the local file system.
  • Sanitization: There are no explicit instructions for the agent to sanitize or validate the content extracted from the source files before it is incorporated into the generated schema descriptions or example values.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 05:16 PM
Security Audit — agent-trust-hub — apify-generate-output-schema