utm-builder

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection where malicious instructions from external sources could influence agent behavior.
  • Ingestion points: Untrusted data enters the agent context through the WebSearch and Read tools used to research topics or audit URLs.
  • Boundary markers: Absent. The instructions do not define clear delimiters or "ignore embedded instructions" warnings for data retrieved from external sources.
  • Capability inventory: The skill has access to high-privilege capabilities including Bash (shell execution) and specialized marketing tools for Google Ads and Google Analytics 4.
  • Sanitization: No sanitization or validation of external content is specified in the skill instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 06:43 AM
Security Audit — agent-trust-hub — utm-builder