skills/howells/arc/seo/Gen Agent Trust Hub

seo

Pass

Audited by Gen Agent Trust Hub on May 10, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes npx lighthouse and npx unlighthouse to perform technical SEO and performance audits. These are well-known, standard tools in the web development ecosystem.
  • [EXTERNAL_DOWNLOADS]: Fetches performance data from Google's PageSpeed Insights API (googleapis.com) and utilizes npx to download and run auditing packages. These sources are considered well-known and trusted services.
  • [DATA_EXFILTRATION]: Network communication is limited to user-specified URLs and official Google APIs for the purpose of the audit. There is no evidence of unauthorized sensitive data access or exfiltration.
  • [PROMPT_INJECTION]: The instructions do not contain patterns suggesting attempts to bypass safety filters or override agent behavior.
  • [REMOTE_CODE_EXECUTION]: Uses npx to execute external Node.js packages. While this involves downloading and running code, the packages mentioned (lighthouse, unlighthouse) are established and widely used for the skill's stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
May 10, 2026, 04:39 PM
Security Audit — agent-trust-hub — seo