Pass
Audited by Gen Agent Trust Hub on Aug 17, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes data from Reddit, which serves as an ingestion point for untrusted content that could contain instructions to influence the agent.
- Ingestion points: The agent reads content from Reddit pages, including inboxes, mentions, and threads, as specified in SKILL.md.
- Boundary markers: The instructions do not provide any delimiters or boundary markers to separate the external data from the agent's internal logic.
- Capability inventory: The agent possesses capabilities to navigate the browser, click elements, and type content to create posts, comments, or messages.
- Sanitization: The skill does not define any sanitization or validation logic for the content retrieved from Reddit.
Audit Metadata