fetch-public-page-stats

Pass

Audited by Gen Agent Trust Hub on Sep 3, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes content from an external website, which is a common surface for indirect prompt injection.
  • Ingestion points: The workflow involves fetching data from the Substack homepage and individual post URLs using the WebFetch tool.
  • Boundary markers: There are no explicit markers or instructions provided to the agent to distinguish between the fetched data and its own system instructions.
  • Capability inventory: The skill's capabilities are restricted to data retrieval and mathematical comparison; it does not utilize high-risk tools for shell access, file system modification, or network exfiltration of sensitive local data.
  • Sanitization: The instructions do not describe any mechanisms to sanitize or validate the external content before processing it.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 3, 2026, 02:37 PM
Security Audit — agent-trust-hub — fetch-public-page-stats