seo-hreflang

Pass

Audited by Gen Agent Trust Hub on Jun 16, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill exhibits an Indirect Prompt Injection surface (Category 8).
  • Ingestion points: Untrusted data is ingested when the agent audits external URLs or local directories via the /seo hreflang audit command.
  • Boundary markers: There are no instructions for the agent to use delimiters to separate audited content from its internal logic.
  • Capability inventory: The skill involves generating code (HTML and XML) and references a vendor-owned script (scripts/content_quality.py). These capabilities could be manipulated by adversarial content found on target sites.
  • Sanitization: No explicit sanitization or filtering of external content is defined in the instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 16, 2026, 02:37 AM
Security Audit — agent-trust-hub — seo-hreflang