seo-content-marketing-skill-suite-claude

Pass

Audited by Gen Agent Trust Hub on May 17, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTIONNO_CODE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill's installation documentation instructs users to clone a repository from a third-party GitHub account (OctagonWoodpecker/r07-getbindu-awesome-claude-code-and-skills-seo.git) to obtain the full suite of implementation files.
  • [PROMPT_INJECTION]: The skill facilitates indirect prompt injection by design as it is intended to ingest and analyze data from external websites during SEO audits and SERP analysis. 1. Ingestion points: Commands such as /content-audit, /technical-seo, and /page-speed-seo ingest data from user-provided domains and URLs as specified in the command definitions. 2. Boundary markers: The documentation does not define any explicit boundary markers or safety instructions to mitigate the risk of the agent obeying commands embedded within the external content it analyzes. 3. Capability inventory: The skill is designed to perform network operations (for crawling and API data retrieval) and to write results to local files in various formats (Markdown, CSV, JSON). 4. Sanitization: There is no evidence in the provided file of content sanitization or validation of the data retrieved from external sources.
  • [NO_CODE]: The provided SKILL.md file contains only markdown instructions, examples, and metadata for the agent; it does not include the underlying executable scripts or binaries required to perform the described SEO actions.
Audit Metadata
Risk Level
SAFE
Analyzed
May 17, 2026, 03:29 PM
Security Audit — agent-trust-hub — seo-content-marketing-skill-suite-claude