content-planner
Pass
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill ingests data from external web platforms (Reddit, Quora, LinkedIn) and local workspace files, creating a potential surface for indirect prompt injection.
- Ingestion points: Reads local configuration files in the .sales/ directory and performs web research on social media platforms.
- Boundary markers: Lacks explicit markers to separate instructions from untrusted external data.
- Capability inventory: Capabilities include performing web searches and writing to local files (.sales/content-calendar.md).
- Sanitization: No data validation or sanitization steps are defined for external research results.
Audit Metadata