firecrawl-competitive-intel
Pass
Audited by Gen Agent Trust Hub on Aug 21, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill ingests data from untrusted external websites, creating a surface for indirect prompt injection.
- Ingestion points: Scraped content from competitor pricing pages, blogs, changelogs, and product pages via Firecrawl tools (SKILL.md).
- Boundary markers: Instructions lack specific delimiters or warnings for the agent to ignore instructions embedded within the scraped external content.
- Capability inventory: The skill utilizes Firecrawl tools for web scraping and browser interaction, and can utilize sub-agents for parallel task execution (SKILL.md).
- Sanitization: No explicit content filtering or validation of the external data is defined in the instructions.
Audit Metadata