analytics-tracking

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill and its associated documentation files provide educational content and implementation templates for analytics tracking. All provided code snippets and the Python generator script are benign and function as described.
  • [REMOTE_CODE_EXECUTION]: No remote code execution vectors were identified. The included Python script, tracking_plan_generator.py, uses standard libraries to process local data and generates reports without network access or unsafe execution methods.
  • [DATA_EXFILTRATION]: No data exfiltration patterns were found. While the skill refers to analytics platforms like Google Analytics, it does so within the scope of legitimate implementation guidance and does not access sensitive system files or environment variables.
  • [INDIRECT_PROMPT_INJECTION]: The skill mentions reading a context file (marketing-context.md), but it does not possess capabilities (such as network requests or shell execution) that would allow malicious instructions in that file to cause harm.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 02:33 PM
Security Audit — agent-trust-hub — analytics-tracking