product-launch-announcement-writer

Pass

Audited by Gen Agent Trust Hub on Mar 21, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes untrusted content from external URLs, which creates a potential surface for indirect prompt injection.\n
  • Ingestion points: The agent is instructed to analyze user-provided GitHub repositories and homepages using web search and page-reading tools in SKILL.md.\n
  • Boundary markers: There are no explicit delimiters or instructions provided to the agent to isolate or ignore instructions that might be embedded in the fetched external content.\n
  • Capability inventory: The skill uses web-reading tools to extract information and then generates platform-specific marketing copy based on that data.\n
  • Sanitization: No validation or sanitization steps are defined for the content retrieved from external sources before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 21, 2026, 01:00 AM
Security Audit — agent-trust-hub — product-launch-announcement-writer