category-positioning
Pass
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied data such as App IDs, app descriptions, and business goals to generate recommendations. This creates a standard ingestion surface where an agent might process untrusted external content. However, the skill lacks dangerous capabilities such as arbitrary code execution or filesystem writes, and the interaction is scoped to providing marketing analysis.
- [SAFE]: The skill references a specific function
get_downloads_to_topwhich is described as an analytical tool from the author's suite (Appeeky). This is a functional reference relevant to the skill's purpose. No sensitive paths, obfuscation, or unauthorized network operations were detected.
Audit Metadata