page-cro

Pass

Audited by Gen Agent Trust Hub on Apr 7, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is composed entirely of instructional Markdown content and reference data. There are no executable scripts, system-level commands, or network operations defined within the files.
  • [DATA_EXFILTRATION]: The instructions include a check for local context files such as .agents/product-marketing-context.md. This is a benign pattern used to gather project-specific information and does not constitute a security risk as the skill lacks any mechanisms to transmit this data externally.
  • [PROMPT_INJECTION]: While the skill's primary function is to process and analyze external URLs (marketing pages), which is a common vector for indirect prompt injection, the risk is negligible because the skill does not define or utilize any tools capable of modifying the environment, accessing credentials, or performing network exfiltration.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 7, 2026, 03:42 AM
Security Audit — agent-trust-hub — page-cro