web-research
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process data from external websites via the
web_fetchtool. While this creates a potential surface for indirect prompt injection (where malicious content on a webpage could attempt to influence agent behavior), the skill does not grant the agent dangerous capabilities such as file writing or command execution that could be exploited. The risk is considered low and inherent to the skill's primary purpose of web research.
Audit Metadata