skills/fradser/dotclaude/popups/Gen Agent Trust Hub

popups

Pass

Audited by Gen Agent Trust Hub on Jul 27, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill contains instructions that ingest untrusted data from the local project environment to provide contextual recommendations, establishing a surface for indirect prompt injection.
  • Ingestion points: SKILL.md (Initial Assessment) instructs the agent to read .agents/product-marketing.md, .claude/product-marketing.md, or product-marketing-context.md.
  • Boundary markers: Absent. The instructions do not define delimiters or specify that the content of these files should be treated as untrusted data.
  • Capability inventory: The skill defines capabilities for generating marketing copy, recommending triggers, and designing user flows based on the provided context (SKILL.md).
  • Sanitization: Absent. There are no instructions to sanitize, validate, or filter the content of the external marketing context files before the agent processes them.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 27, 2026, 12:30 AM
Security Audit — agent-trust-hub — popups