beat-competitors
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill establishes a workflow for analyzing external competitor data, including keyword positions, pricing, and market sentiment.
- Ingestion points: Competitor keyword data and position gaps (SKILL.md, Step 2); competitor positioning statements, pricing models, and review sentiment (SKILL.md, Step 5).
- Boundary markers: Absent. The instructions do not specify the use of delimiters or 'ignore' instructions for the external content being processed.
- Capability inventory: The skill is purely instructional and generates text-based reports. There are no subprocess calls, file-write operations, or network exfiltration capabilities within the skill body or referenced scripts (SKILL.md).
- Sanitization: Absent. There is no explicit requirement for the agent to filter or sanitize the ingested competitor data.
- [SAFE]: The skill implements a standard business strategy workflow. No patterns of credential theft, remote code execution, or persistence were detected. The link to an external SEO tool (seojuice.com) is for informational and promotional purposes and does not facilitate automated script execution or unauthorized data exfiltration.
Audit Metadata