bbc-skill-tool
Pass
Audited by Gen Agent Trust Hub on Sep 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides structured and safety-conscious guidance for interacting with the BuilderBot Cloud platform. It enforces mandatory patterns such as verifying the state of the project after every mutation (create/update/delete) and requiring explicit user confirmation before any destructive actions.
- [INDIRECT_PROMPT_INJECTION]: The skill facilitates the creation of AI-powered bots that process untrusted external data (WhatsApp messages). The documentation provides detailed templates and instructions for handling these inputs via system prompts and marker-based routing patterns, which helps structure the agentic behavior and manage the inherent ingestion surface of conversational AI applications.
- [EXTERNAL_DOWNLOADS]: The instructions reference the official service domain (builderbot.cloud) and well-known services such as Google Apps Script for HTTP integrations. These references are integral to the skill's purpose and do not represent a security risk.
Audit Metadata