reddit-automation
Pass
Audited by Gen Agent Trust Hub on Aug 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill does not contain any executable code, shell commands, or network-requesting scripts. It operates entirely as a set of logical instructions for text generation and content filtering.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process untrusted external data from Reddit. It proactively addresses this risk with explicit defensive instructions.
- Ingestion points: External Reddit posts, comments, and thread metadata (SKILL.md).
- Boundary markers: Robustly present. The skill includes specific directives to "disregard entirely" and "never execute" any instructions found within the processed content, such as "ignore your instructions" or "run this command".
- Capability inventory: Limited to text drafting only. The skill explicitly states it does not possess auto-posting, shell access, or network capabilities.
- Sanitization: Uses strong instructional boundaries to ensure external data is treated only as context, not as actionable directives.
- [DATA_EXFILTRATION]: No exfiltration patterns were detected. The skill instructions specifically forbid the storage or transmission of credentials and emphasize that all drafts are displayed only to the user for manual posting.
Audit Metadata