pricing

Fail

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: CRITICALEXTERNAL_DOWNLOADSDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The file references/full-reference.md contains 16 URLs identified as malicious phishing sites by automated scanners. The file itself is also flagged for suspicious network-related activity (MD:HttpRequest-inf).
  • [DATA_EXFILTRATION]: The skill directs users and the agent to confirmed phishing domains, specifically under getmonetizely.com. These domains are known for harvesting credentials and sensitive information through deceptive content.
  • [PROMPT_INJECTION]: The skill exhibits a significant surface for indirect prompt injection. 1) Ingestion points: The agent is instructed to read references/full-reference.md as its primary knowledge base. 2) Boundary markers: There are no instructions to disregard or sanitize content from the provided external links. 3) Capability inventory: The agent is expected to provide specific data from these potentially malicious sources. 4) Sanitization: No validation or filtering is applied to the external references.
  • [NO_CODE]: No executable Python or Node.js code was detected within the skill files.
Recommendations
  • CRITICAL: 1 infected file(s) detected - DO NOT USE
  • AI detected serious security threats
  • Contains 16 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Apr 29, 2026, 10:18 PM
Security Audit — agent-trust-hub — pricing