web-search
Pass
Audited by Gen Agent Trust Hub on Jul 21, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill processes untrusted data from external web sources via the Tavily search tool, which presents an indirect prompt injection surface where maliciously crafted content on web pages could attempt to influence the agent's behavior. \n
- Ingestion points: Web search results retrieved from the internet as described in SKILL.md. \n
- Boundary markers: The skill does not provide specific instructions or delimiters for the agent to distinguish between system instructions and content found in search results. \n
- Capability inventory: Capability is limited to information retrieval and summarization; no dangerous capabilities like file system access or code execution are present. \n
- Sanitization: There are no explicit instructions for sanitizing or filtering the content retrieved from external searches.
Audit Metadata