app-store-optimization
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill provides functional utilities for App Store Optimization. Comprehensive analysis of the included Python scripts, including
ab_test_planner.py,aso_scorer.py,keyword_analyzer.py, andmetadata_optimizer.py, confirms that they only perform localized string manipulation, regex-based analysis, and statistical calculations. No network exfiltration, hardcoded credentials, or unauthorized file system access patterns were detected. - [INDIRECT_PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection. 1. Ingestion points:
scripts/review_analyzer.py(ingests user review text) andscripts/competitor_analyzer.py(ingests competitor app descriptions). 2. Boundary markers: No explicit boundary markers or instructions to ignore embedded commands were identified in the metadata processing workflows. 3. Capability inventory: The skill utilizes scripts for local data scoring and report generation; it lacks dangerous capabilities such as arbitrary shell execution, network request fulfillment, or persistent storage modification. 4. Sanitization: No explicit sanitization or filtering of external text content is implemented within the provided Python analysis modules.
Audit Metadata