seo-hreflang
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill exhibits an Indirect Prompt Injection surface (Category 8).
- Ingestion points: Untrusted data is ingested when the agent audits external URLs or local directories via the
/seo hreflang auditcommand. - Boundary markers: There are no instructions for the agent to use delimiters to separate audited content from its internal logic.
- Capability inventory: The skill involves generating code (HTML and XML) and references a vendor-owned script (
scripts/content_quality.py). These capabilities could be manipulated by adversarial content found on target sites. - Sanitization: No explicit sanitization or filtering of external content is defined in the instructions.
Audit Metadata