seo-and-aeo-strategy
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEDATA_EXFILTRATIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [DATA_EXFILTRATION]: The skill's scripts perform network operations to an external domain (api.dataforseo.com) and arbitrary target URLs during audits. While this is the intended purpose, it involves sending API credentials over the network to a non-whitelisted service.
- Evidence:
scripts/dataforseo_api.pysendsDATAFORSEO_LOGINandDATAFORSEO_PASSWORDvia Basic Authentication tohttps://api.dataforseo.com/v3. - Evidence:
scripts/seo_audit.pycan be instructed to fetch the source code of any provided URL usingurllib.request. - [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from the DataForSEO API responses and from external websites during SEO audits. This content could potentially contain malicious instructions meant to influence the AI agent's behavior if processed without adequate delimiters.
- Ingestion points:
api_postinscripts/dataforseo_api.pyandfetch_urlinscripts/seo_audit.py. - Boundary markers: The instructions do not define strict delimiters or 'ignore' instructions for the data fetched from these tools.
- Capability inventory: The skill has network access and file system write capabilities (for saving drafts), which increases the potential impact of an injection.
- Sanitization: Data is parsed as JSON or via regex, but the content is not explicitly sanitized against secondary prompt injection attacks.
Audit Metadata