hootsuite-performance-tuning
Pass
Audited by Gen Agent Trust Hub on Sep 9, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests profile and message data from the Hootsuite API, which could be a vector for indirect prompt injection if the retrieved content contains adversarial instructions.
- [EXTERNAL_DOWNLOADS]: The code references the 'lru-cache' library from NPM, which is a standard and verifiable dependency for caching.
- [SAFE]: All network operations are directed to the legitimate Hootsuite platform development endpoints and use environment-based access tokens.
Audit Metadata