technical-seo-audit

Pass

Audited by Gen Agent Trust Hub on Sep 2, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides a methodological approach to SEO auditing based on industry-standard guidelines from Google and web.dev. The provided validator script, scripts/check-output.py, is a standard utility that uses regular expressions to verify the presence of required sections in the audit report. No unauthorized system access or command execution was found.\n- [INDIRECT_PROMPT_INJECTION]: The skill involves processing data from external websites, which is a potential surface for indirect prompt injection. However, the instructions are focused on analytical extraction and do not grant the agent capabilities to execute actions based on the content of those pages.\n
  • Ingestion points: Web pages and search console data mentioned in steps 1 through 7 of SKILL.md.\n
  • Boundary markers: None explicitly defined in the templates, relying on the auditor's analytical role.\n
  • Capability inventory: Local file read of the audit report via scripts/check-output.py.\n
  • Sanitization: None specified for external content.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 2, 2026, 12:46 PM
Security Audit — agent-trust-hub — technical-seo-audit