deliverability-check
Pass
Audited by Gen Agent Trust Hub on May 2, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [SAFE]: The skill performs its primary function of retrieving and interpreting public DNS records to audit email deliverability. No obfuscation, unauthorized data access, or malicious commands were identified.
- [PROMPT_INJECTION]: The skill ingests untrusted data from external sources, which creates an indirect prompt injection surface. Ingestion points: DNS TXT records (SPF, DKIM, DMARC) and WebSearch results (SKILL.md). Boundary markers: None identified; data is processed as raw string output. Capability inventory: Uses
Bashfor DNS queries andWritefor file system access. Sanitization: No specific sanitization or validation of the retrieved records is described before processing by the agent. - [SAFE]: The skill references a link to the author's official website (https://cogny.com), which is a legitimate vendor resource.
Audit Metadata