pricing-packaging-tracker

Pass

Audited by Gen Agent Trust Hub on Jul 18, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references an external repository at https://github.com/deanpeters/product-manager-prompts. This is a vendor-owned resource belonging to the skill author and does not involve the execution of untrusted code.
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection (Category 8) because it is designed to ingest and process data from live, untrusted external pricing pages.
  • Ingestion points: Web content from live pricing pages, rate cards, and archived captures as specified in SKILL.md step 3.
  • Boundary markers: Absent; there are no instructions to wrap external content in delimiters or ignore embedded instructions.
  • Capability inventory: None; the skill does not utilize subprocesses, file-writing tools, or network-send capabilities beyond the initial data retrieval.
  • Sanitization: Absent; no explicit validation or filtering of the retrieved web content is performed before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 18, 2026, 05:10 PM
Security Audit — agent-trust-hub — pricing-packaging-tracker