trending-ad-hook-spotter
Pass
Audited by Gen Agent Trust Hub on Apr 10, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill makes legitimate requests to well-known service APIs, including Apify for Reddit data and Algolia for Hacker News data. These are standard integrations for the stated purpose of social media monitoring.
- [COMMAND_EXECUTION]: The skill uses
web_searchfor Twitter and LinkedIn, which is a common and safe capability for AI agents focused on real-time data retrieval. - [CREDENTIALS_UNSAFE]: The skill correctly instructs the user to provide an
APIFY_API_TOKENvia an environment variable, following security best practices for secret management. It does not contain any hardcoded credentials. - [DATA_EXFILTRATION]: There is no evidence of sensitive local file access or unauthorized data transmission. The network operations are limited to fetching trending public social media data.
- [PROMPT_INJECTION]: The instructions focus purely on the functional steps of scanning, scoring, and generating ad hooks without any attempts to bypass model safety filters or override system behavior.
Audit Metadata