daily-news-report
Pass
Audited by Gen Agent Trust Hub on Apr 15, 2026
Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [PROMPT_INJECTION]: The skill exhibits an Indirect Prompt Injection surface by ingesting untrusted data from external websites and processing it to generate summaries.
- Ingestion points: Data enters the system via WebFetch and the mcp__chrome-devtools__ tool as described in Phase 3 and Phase 6 of SKILL.md.
- Boundary markers: There are no explicit delimiters or specific instructions for the agent to ignore instructions embedded within the fetched content.
- Capability inventory: The skill can write files, execute limited bash commands, and spawn sub-agents via the Task tool.
- Sanitization: No validation or sanitization is performed on the scraped content to prevent instruction override.
- [EXTERNAL_DOWNLOADS]: The skill fetches data from several well-known technology and productivity websites, including Hacker News, HuggingFace, and professional blogs, to generate its news reports.
Audit Metadata