structured-data

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a legitimate technical documentation and implementation resource for Schema.org JSON-LD structured data.\n- [SAFE]: All external URLs point to authoritative documentation, official validation tools (Google and Schema.org), or the official domain of the author (cogny.com).\n- [SAFE]: Integration with Google Search Console is performed via specific vendor-owned tools (mcp__cogny__*) which are appropriate for the skill's auditing and implementation purpose.\n- [SAFE]: The skill possesses an indirect prompt injection surface due to its capability to ingest external web content and Search Console data while having access to tools like shell execution and file system writing. However, this ingestion is necessary for its core functionality, and there are no instructions suggesting a malicious intent.\n
  • Ingestion points: External web content via WebFetch and Search Console metadata via mcp__cogny__search_console__tool_inspect_url.\n
  • Boundary markers: Absent.\n
  • Capability inventory: Bash, Write, Read, WebSearch, WebFetch, and specialized Search Console tools.\n
  • Sanitization: Absent.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 06:43 AM
Security Audit — agent-trust-hub — structured-data