keyword-deep-dive

Pass

Audited by Gen Agent Trust Hub on Apr 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, obfuscation, or unauthorized commands were detected in the skill instructions or reference files.
  • [SAFE]: External URLs referenced in the documentation point to well-known SEO industry leaders and data providers for the purpose of citing research and benchmarks.
  • [SAFE]: (Indirect Prompt Injection Surface): The skill involves ingesting data from external search results and competitor websites for analysis. While this is an entry point for untrusted content, the risk is negligible as the skill lacks capabilities for file system modification, credential access, or unauthorized network communication.
  • [SAFE]: The mandatory evidence chain for the data ingestion surface is as follows: 1. Ingestion points: Google search result snippets (Step 1) and the full content of the top 3 competitor pages (Step 5). 2. Boundary markers: Absent; there are no specific instructions for the agent to treat fetched content as untrusted data using delimiters. 3. Capability inventory: The skill utilizes Google Search and fetching of URLs; it lacks capabilities for local file writing, subprocess execution, or arbitrary network sending. 4. Sanitization: No sanitization or validation protocols for the external content are specified.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 19, 2026, 09:22 AM
Security Audit — agent-trust-hub — keyword-deep-dive