Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill has an attack surface for indirect prompt injection as it ingests untrusted data from the web.
- Ingestion points: Data retrieved from external websites using WebSearch and WebFetch tools referenced in SKILL.md.
- Boundary markers: No delimiters or instructions to ignore embedded commands are specified in the instructions.
- Capability inventory: Capability to search and fetch content from the public internet.
- Sanitization: No sanitization or filtering of retrieved content is defined.
Audit Metadata