newsletter

Pass

Audited by Gen Agent Trust Hub on Sep 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill primarily consists of instructional content and best practices for email marketing.- [COMMAND_EXECUTION]: The skill contains a shell script scripts/verify.sh designed to validate the structure of newsletter drafts.
  • The script uses standard utilities (grep, sed, wc, tr) to perform length and formatting checks.
  • The script is read-only and does not perform network requests or modify the file system.- [INDIRECT_PROMPT_INJECTION]: The scripts/verify.sh tool processes user-supplied or agent-generated newsletter drafts.
  • Ingestion points: The script reads the file path provided as a positional argument.
  • Boundary markers: The script looks for specific header markers (subject:, preview:) to delimit data.
  • Capability inventory: Analysis is limited to regex matching and character counting; the script does not execute the file content or make network calls.
  • Sanitization: The script extracts specific fields for validation and does not interpolate data into executable contexts.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 21, 2026, 11:10 PM
Security Audit — agent-trust-hub — newsletter