plan-aeo-readiness

Pass

Audited by Gen Agent Trust Hub on Aug 25, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, data exfiltration attempts, or unauthorized command execution were detected. The skill is restricted to auditing and planning activities with a clear "Plan only until approved" guardrail.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to analyze external data sources such as website content and configuration files (robots.txt, llms.txt), which constitutes a potential ingestion surface for indirect prompt injection.
  • Ingestion points: Analyzes site content, robots.txt, and structured data from user-provided websites.
  • Boundary markers: The instructions do not define specific delimiters for separating user-controlled data from instructions.
  • Capability inventory: The skill is restricted to emitting a markdown plan file. It does not utilize shell execution, network-send tools, or file-write capabilities beyond generating the report.
  • Sanitization: No explicit sanitization or validation of the ingested site content is performed within the instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 25, 2026, 05:56 AM
Security Audit — agent-trust-hub — plan-aeo-readiness