content-strategy

Pass

Audited by Gen Agent Trust Hub on Jun 30, 2026

Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [PROMPT_INJECTION]: The skill is designed to analyze untrusted external data such as call transcripts, survey responses, and forum posts. This creates a surface for indirect prompt injection where instructions hidden in these sources could influence the agent's behavior.\n
  • Ingestion points: External data sources identified in the 'Content Ideation Sources' section of SKILL.md (Transcripts, Surveys, Forum Research, Competitor Analysis).\n
  • Boundary markers: The skill does not implement specific delimiters or 'ignore' instructions to isolate external content from its own logic.\n
  • Capability inventory: The skill utilizes Notion MCP tools to create pages and databases in an external workspace.\n
  • Sanitization: There are no instructions for sanitizing or validating the ingested data before processing.\n- [EXTERNAL_DOWNLOADS]: The skill references the official Notion MCP server on GitHub (github.com/makenotion/notion-mcp-server) as a resource for setting up automated strategy storage.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 30, 2026, 05:32 PM
Security Audit — agent-trust-hub — content-strategy