featured-snippet-optimizer

Pass

Audited by Gen Agent Trust Hub on May 14, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill presents a surface for indirect prompt injection because it is designed to fetch and analyze content from arbitrary external URLs provided by the user.
  • Ingestion points: Step 3 in SKILL.md instructs the agent to fetch and read the content of the user's webpage to identify optimization gaps.
  • Boundary markers: There are no instructions or delimiters provided to define the boundaries of the external content or to instruct the agent to ignore any embedded instructions or commands found within that content.
  • Capability inventory: The agent's capabilities within this skill are focused on search, fetch, and text generation; no high-risk capabilities like shell execution, file system modification, or persistence are invoked.
  • Sanitization: The skill does not include steps to sanitize or validate the content retrieved from the user-supplied URL before processing it.
Audit Metadata
Risk Level
SAFE
Analyzed
May 14, 2026, 03:39 AM
Security Audit — agent-trust-hub — featured-snippet-optimizer