competitor-analysis

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from third-party search engine results and competitor content.
  • Ingestion points: The skill ingests external data through tools like get_ranked_keywords, get_serp_results, and get_google_business_questions which fetch content from the public web.
  • Boundary markers: The instructions do not define specific delimiters for separating external content from the agent's internal reasoning.
  • Capability inventory: The skill has the ability to write to the project's internal state via update_project_context and generate HTML-based reports via the seo-report skill.
  • Sanitization: No explicit content sanitization or validation logic is specified for the data retrieved from external tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 07:35 PM
Security Audit — agent-trust-hub — competitor-analysis