competitive-intel
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [REMOTE_CODE_EXECUTION]: The skill's
SKILL.mdfile instructs the user to install thebdataCLI by piping a shell script fromhttps://cli.brightdata.com/install.shdirectly tobash. This script is hosted on the official infrastructure of the skill's author, Bright Data, making it a standard and expected deployment method for the tool. - [COMMAND_EXECUTION]: The skill extensively utilizes the shell to execute
bdataCLI commands for web scraping and data pipeline tasks. These commands are dynamically populated with external URLs and search terms. - [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from various external websites, creating a surface for indirect prompt injection.
- Ingestion points: External web data from competitor sites, G2, Capterra, and LinkedIn retrieved via
bdatacalls inSKILL.md. - Boundary markers: The instructions in
SKILL.mdprovide structured templates and guidelines to 'Separate facts from analysis' and 'Cite every data point,' but there are no explicit delimiters to segregate untrusted data from the system prompt. - Capability inventory: Execution of shell commands via the
bdatatool is utilized across all modules inSKILL.md. - Sanitization: There is no evidence of sanitization or filtering of the scraped content within the provided skill instructions.
- [EXTERNAL_DOWNLOADS]: The skill performs numerous network requests to external services like Crunchbase, LinkedIn, Amazon, and review aggregators to collect market intelligence, utilizing the vendor's web scraping infrastructure.
Audit Metadata