app-store-optimization

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides functional utilities for App Store Optimization. Comprehensive analysis of the included Python scripts, including ab_test_planner.py, aso_scorer.py, keyword_analyzer.py, and metadata_optimizer.py, confirms that they only perform localized string manipulation, regex-based analysis, and statistical calculations. No network exfiltration, hardcoded credentials, or unauthorized file system access patterns were detected.
  • [INDIRECT_PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection. 1. Ingestion points: scripts/review_analyzer.py (ingests user review text) and scripts/competitor_analyzer.py (ingests competitor app descriptions). 2. Boundary markers: No explicit boundary markers or instructions to ignore embedded commands were identified in the metadata processing workflows. 3. Capability inventory: The skill utilizes scripts for local data scoring and report generation; it lacks dangerous capabilities such as arbitrary shell execution, network request fulfillment, or persistent storage modification. 4. Sanitization: No explicit sanitization or filtering of external text content is implemented within the provided Python analysis modules.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 01:07 PM
Security Audit — agent-trust-hub — app-store-optimization