utm-builder
Pass
Audited by Gen Agent Trust Hub on May 2, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection where malicious instructions from external sources could influence agent behavior.
- Ingestion points: Untrusted data enters the agent context through the
WebSearchandReadtools used to research topics or audit URLs. - Boundary markers: Absent. The instructions do not define clear delimiters or "ignore embedded instructions" warnings for data retrieved from external sources.
- Capability inventory: The skill has access to high-privilege capabilities including
Bash(shell execution) and specialized marketing tools for Google Ads and Google Analytics 4. - Sanitization: No sanitization or validation of external content is specified in the skill instructions.
Audit Metadata