content-strategy
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill instructions create a surface for indirect prompt injection (Category 8) by encouraging the analysis of untrusted external data.\n- Ingestion points: The agent is instructed in SKILL.md to analyze data from sources such as call transcripts, survey responses, keyword exports (Ahrefs, SEMrush), and live forum research from Reddit and Quora.\n- Boundary markers: There are no instructions provided to wrap these external inputs in delimiters or to include system warnings to ignore instructions found within that data.\n- Capability inventory: The skill focuses on generating strategy, pillar maps, and cluster designs. No dangerous tool capabilities like arbitrary code execution or filesystem modification were identified.\n- Sanitization: The skill does not implement validation or sanitization for the content processed from external sources.\n- [NO_CODE]: The skill consists entirely of markdown documentation and JSON configuration files; it does not include any executable code scripts or binaries.
Audit Metadata