bellingcat-archiving
Pass
Audited by Gen Agent Trust Hub on Jul 12, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTIONNO_CODE
Full Analysis
- [SAFE]: The skill serves as a reference guide for archiving tools and does not contain any executable scripts, commands, or persistence mechanisms.
- [NO_CODE]: No code or scripts are included with this skill.
- [EXTERNAL_DOWNLOADS]: The skill references several external websites and GitHub repositories for documentation and tool access, including bellingcat.gitbook.io and github.com/bellingcat. These are well-known resources relevant to the skill's stated purpose.
- [PROMPT_INJECTION]: The skill establishes a workflow for processing untrusted external web content which creates a surface for indirect prompt injection. 1. Ingestion points: External web pages, social media posts, and TikTok content retrieved via the listed tools. 2. Boundary markers: None defined to separate external data from agent instructions. 3. Capability inventory: Internet access for fetching documentation and content. 4. Sanitization: No sanitization or validation logic is provided for the captured content.
Audit Metadata