competitor-monitoring-system

Pass

Audited by Gen Agent Trust Hub on Jul 20, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: Indirect Prompt Injection surface detected. The skill's primary function is to aggregate and analyze data from external, untrusted sources such as competitor blogs, social media posts, and product reviews.
  • Ingestion points: Data entering the system via multiple scraping tools (blog-scraper, twitter-scraper, reddit-scraper, review-scraper, etc.) defined in SKILL.md.
  • Boundary markers: The instructions do not specify the use of delimiters or 'ignore' commands when the agent processes the external content, increasing the risk that the agent might follow instructions embedded in that content.
  • Capability inventory: The skill writes reporting files to the local file system (clients/<client-name>/intelligence/).
  • Sanitization: There is no evidence of filtering or sanitizing the external data before it is presented to the model for summarization and report generation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 20, 2026, 06:25 PM
Security Audit — agent-trust-hub — competitor-monitoring-system