seo-intelligence-suite

Pass

Audited by Gen Agent Trust Hub on Jun 23, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill is designed to ingest and process untrusted external data from sources like Google SERPs and competitor websites, making it susceptible to indirect prompt injection attacks if those external sources contain malicious instructions.
  • Ingestion points: Scraped content from Google search results and content extraction from ranking competitor URLs.
  • Boundary markers: The skill instructions do not specify any delimiters or warnings to treat the scraped content as untrusted or separate from the system instructions.
  • Capability inventory: The skill defines logic for scraping and auditing but does not include standalone scripts or executable binaries.
  • Sanitization: There is no mention of sanitizing or filtering the content retrieved from external pages.
  • [NO_CODE]: The skill consists solely of Markdown instructions and documentation and does not contain any executable scripts, binaries, or source code files.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 23, 2026, 09:01 AM
Security Audit — agent-trust-hub — seo-intelligence-suite