social-strategy
Pass
Audited by Gen Agent Trust Hub on Jun 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is document orchestration and generation. No evidence of malicious code, unauthorized data exfiltration, or persistence mechanisms was found.
- [PROMPT_INJECTION]: The skill ingests untrusted user input via the
--guidanceparameter to tailor the generated strategy. While this constitutes an indirect prompt injection surface, the skill lacks high-privilege capabilities (such as network access or shell execution) required to leverage an injection for malicious purposes. - [DATA_EXPOSURE]: Artifacts are saved to a specific local path (
.aiwg/marketing/social/). The skill does not access sensitive user directories, credentials, or environment variables. - [COMMAND_EXECUTION]: No dangerous system commands or privilege escalation attempts were detected. The skill relies on natural language instructions for the agent to perform its tasks.
Audit Metadata