content-strategy
Pass
Audited by Gen Agent Trust Hub on Aug 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary content consists of structured markdown documentation defining content strategy principles and headless CMS selection criteria. It does not include any scripts, executable commands, or configuration files that could be used for malicious purposes.
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to perform tasks involving the analysis of external data, such as content audits and user interviews. This creates an attack surface where an agent might encounter and potentially process malicious instructions embedded in third-party content. However, the skill does not implement automated processing or provide unsafe capabilities (like shell execution or file writing) that would allow such an injection to escalate. The risk is inherent to the nature of content analysis tasks and is mitigated by the lack of exploitable tools.
- [EXTERNAL_DOWNLOADS]: The reference material mentions official domains for well-known services, specifically Contentful's preview API (
preview.contentful.com). These references are purely documentation-based and do not trigger automated network requests or downloads.
Audit Metadata