datalocastle-r03-anthropics-skills-seo
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructions include steps to clone the repository from GitHub for installation.
- [CREDENTIALS_UNSAFE]: The skill utilizes environment variables (e.g.,
SEO_API_KEY) and references local service account files for API authentication, which is an industry-standard practice for secure secret management. - [COMMAND_EXECUTION]: The documentation provides CLI commands and shell scripts for installation, local configuration, and batch processing.
- [DATA_EXFILTRATION]: The skill performs legitimate network operations to fetch data from well-known SEO providers (Semrush, Ahrefs, Moz) and crawls user-specified target domains to generate reports.
- [PROMPT_INJECTION]: The skill has a data ingestion surface that processes content from external websites and search engine results pages; this is inherent to its primary purpose as an SEO audit tool.
Audit Metadata