seo-local
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it ingests untrusted data from external websites using the
WebFetchtool. - Ingestion points: The skill fetches content from the URL provided in the
argument-hintto perform SEO audits. - Boundary markers: There are no explicit boundary markers or instructions to ignore instructions embedded in the fetched web content.
- Capability inventory: The skill has access to
Bash,Write,Read, andWebFetch, which increases the potential impact if an indirect injection successfully influences the agent's behavior. - Sanitization: The instructions do not specify any validation, filtering, or escaping of the content retrieved from external URLs before it is processed.
Audit Metadata