seo-writer
Pass
Audited by Gen Agent Trust Hub on Sep 20, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONMETADATA_POISONINGNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill provides a framework for analyzing and processing untrusted text from article drafts and external search results.
- Ingestion points: Text content from user drafts and Search Engine Results Page (SERP) analysis data are ingested during the Architect, Carpenter, and Judge phases as described in
SKILL.mdandreferences/search-intent-analysis.md. - Boundary markers: The skill instructions and templates in
SKILL.mdlack explicit delimiters or instructions to treat ingested content as untrusted data. - Capability inventory: The skill is entirely instructional and does not utilize any code execution, file system access, or network tools.
- Sanitization: There are no procedures defined for sanitizing or validating external input before processing.
- [METADATA_POISONING]: The
SKILL.mdfile identifies the author ashttps://github.com/dmitry, which conflicts with the provided author context ofjeffallan. While not appearing to be malicious, this is an inconsistency in the skill's metadata. - [NO_CODE]: The skill contains only Markdown-based documentation and guidelines. No scripts, binaries, or automated tool configurations were detected in any of the provided files.
Audit Metadata