skills/cyrusagents/cyrus/google/Gen Agent Trust Hub

google

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill has an attack surface for indirect prompt injection as it ingests untrusted data from the web.
  • Ingestion points: Data retrieved from external websites using WebSearch and WebFetch tools referenced in SKILL.md.
  • Boundary markers: No delimiters or instructions to ignore embedded commands are specified in the instructions.
  • Capability inventory: Capability to search and fetch content from the public internet.
  • Sanitization: No sanitization or filtering of retrieved content is defined.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 12:15 AM
Security Audit — agent-trust-hub — google