product-marketing-context

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it reads and processes external codebase data to generate a foundational context document.
  • Ingestion points: The skill reads various repository files including README.md, package.json, and marketing copy during the 'Auto-draft' workflow.
  • Boundary markers: None. The instructions do not define delimiters or provide guidance to the agent to ignore embedded instructions within the source files.
  • Capability inventory: The skill performs file read and write operations but does not have capabilities for network access or arbitrary command execution.
  • Sanitization: No validation or sanitization of the ingested content is performed before it is written to the marketing context file. Because other skills are instructed to reference this document, any injection could propagate through the agent's workflow.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 11:09 PM
Security Audit — agent-trust-hub — product-marketing-context