dineway-seo-content-brief

Pass

Audited by Gen Agent Trust Hub on Jun 16, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill ingests untrusted data from external search results and competitor websites, creating a surface for indirect prompt injection attacks where malicious content in those pages could attempt to influence the agent's behavior.
  • Ingestion points: Workflow step 3 directs the agent to use DataForSEO or Firecrawl for live SERP, keyword, competitor, or page extraction.
  • Boundary markers: The skill explicitly loads security-boundaries.md and instructs the agent to "Filter SERP/reference pages before drawing conclusions" and "skip irrelevant directories, social/forum noise, login/admin pages, and unsupported sources."
  • Capability inventory: The agent has the capability to modify Dineway content, SEO metadata, media, and settings as described in the workflow and referenced apply-loop.md.
  • Sanitization: Relies on instructional filtering and the referenced security framework to evaluate the safety of external source recommendations.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 16, 2026, 03:54 AM
Security Audit — agent-trust-hub — dineway-seo-content-brief