astro-seo
Pass
Audited by Gen Agent Trust Hub on Apr 3, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides legitimate SEO implementation guidelines and reusable templates for Astro applications.- [SAFE]: Proactively mitigates potential Cross-Site Scripting (XSS) by instructing the use of
set:htmlwithJSON.stringify()for structured data injection, a critical security practice in component-based frameworks.- [SAFE]: Uses and recommends official platform integrations and well-known packages including@astrojs/sitemapand@astrojs/rss.- [SAFE]: Indirect Prompt Injection Surface: The skill templates ingest external data such as page titles and descriptions inreferences/templates/seo-head.mdandreferences/templates/json-ld.md. While explicit boundary markers for these inputs are absent within the templates, the capability inventory is restricted to standard HTML generation with no dangerous subprocess or eval calls. The skill explicitly addresses sanitization for high-risk areas like JSON-LD.
Audit Metadata