content-repurposing

Pass

Audited by Gen Agent Trust Hub on Aug 7, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection due to its handling of untrusted input data.\n
  • Ingestion points: The skill processes long-form content, such as blog posts and podcast transcripts, to generate derivative assets.\n
  • Boundary markers: There are no explicit delimiters or instructions provided to the agent to ignore potentially malicious instructions embedded within the source content.\n
  • Capability inventory: The skill utilizes the belt CLI tool via Bash, which has capabilities for network operations, specifically posting to social media platforms (e.g., x/post-create) and interacting with AI application APIs.\n
  • Sanitization: The skill does not perform any visible sanitization or validation of the input content before it is processed by the agent or passed to tools.\n- [SAFE]: The skill interacts with the belt CLI and the inference.sh platform. These tools and the associated documentation links to github.com/inference-sh are consistent with the skill's primary purpose and represent standard usage of the platform's ecosystem.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 7, 2026, 06:32 PM
Security Audit — agent-trust-hub — content-repurposing