ai-marketing-skills-tom-babb
Pass
Audited by Gen Agent Trust Hub on Jun 12, 2026
Risk Level: SAFE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill documents workflows for scraping content from Reddit and YouTube and processing it via LLM prompts. This creates a surface for indirect prompt injection from untrusted external data.
- Ingestion points:
SKILL.mddetails a Reddit scraping function and instructions for pasting external discussions into synthesis prompts. - Boundary markers: The prompt templates do not currently employ delimiters (e.g., XML tags) to separate scraped content from instructions.
- Capability inventory: The agent uses LLM capabilities to synthesize, analyze, and rewrite ingested data.
- Sanitization: No explicit logic for sanitizing or filtering instructions from ingested data is present.
Audit Metadata