serpapi-prod-checklist
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes potentially untrusted data from the local file system and external documentation, which could contain instructions designed to influence the agent's behavior during the audit process.
- Ingestion points: The agent uses
Read,Glob, andGrepto scan the repository andWebFetchto retrieve external documentation fromserpapi.com. - Boundary markers: The instructions do not define specific delimiters or boundary markers to isolate processed data from the agent's core instructions.
- Capability inventory: The skill utilizes
WriteandEdittools to record audit decisions and redacted evidence to the file system. - Sanitization: There are no explicit instructions for sanitizing or filtering the content fetched from external sources or read from the repository.
Audit Metadata