seo-audit

Pass

Audited by Gen Agent Trust Hub on Apr 16, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is vulnerable to indirect prompt injection (Category 8) because its primary function involves fetching and processing data from external websites that may contain malicious instructions designed to subvert the agent's behavior.
  • Ingestion points: External website content is ingested into the agent's context via the web_fetch and curl tools using URLs provided by the user.
  • Boundary markers: The instructions do not provide explicit boundary markers or "ignore embedded instructions" warnings to encapsulate the fetched content.
  • Capability inventory: The agent has the capability to perform network requests (web_fetch, curl), read local context files (.agents/product-marketing-context.md), and generate complex audit reports which could be influenced by malicious input.
  • Sanitization: There is no evidence of sanitization, escaping, or validation of the external content before it is processed by the agent's reasoning engine.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 16, 2026, 12:10 PM
Security Audit — agent-trust-hub — seo-audit