android-aso
Pass
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or dangerous command executions were detected. The skill purely provides instructional content for metadata optimization, keyword research, and ASO strategy.
- [INDIRECT_PROMPT_INJECTION]: The skill involves processing user-supplied metadata (App titles, descriptions, and keywords).
- Ingestion points: The skill requests current titles, short descriptions, and keywords from the user in SKILL.md.
- Boundary markers: Absent; the skill does not use specific delimiters to wrap user-provided metadata when generating drafts.
- Capability inventory: No dangerous capabilities such as network exfiltration, local file writes, or shell executions are defined in this skill.
- Sanitization: No explicit sanitization or validation of the input strings is described.
Audit Metadata