content-strategy
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill is designed to ingest and analyze untrusted external data, which creates a potential surface for indirect prompt injection attacks.
- Ingestion points: Processes keyword exports (Ahrefs, SEMrush, GSC), customer call transcripts, survey responses, and forum data (Reddit, Quora) as specified in SKILL.md.
- Boundary markers: The instructions do not define specific delimiters or 'ignore' instructions to isolate untrusted data from the system prompt.
- Capability inventory: The skill does not contain any scripts, subprocess calls, or file-write capabilities that could be exploited.
- Sanitization: There are no instructions for sanitizing or filtering external content before processing.
Audit Metadata