firecrawl-competitive-intel

Pass

Audited by Gen Agent Trust Hub on Aug 21, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill ingests data from untrusted external websites, creating a surface for indirect prompt injection.
  • Ingestion points: Scraped content from competitor pricing pages, blogs, changelogs, and product pages via Firecrawl tools (SKILL.md).
  • Boundary markers: Instructions lack specific delimiters or warnings for the agent to ignore instructions embedded within the scraped external content.
  • Capability inventory: The skill utilizes Firecrawl tools for web scraping and browser interaction, and can utilize sub-agents for parallel task execution (SKILL.md).
  • Sanitization: No explicit content filtering or validation of the external data is defined in the instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 21, 2026, 12:46 PM
Security Audit — agent-trust-hub — firecrawl-competitive-intel