blog-content-auditor

Pass

Audited by Gen Agent Trust Hub on Aug 30, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • Indirect Prompt Injection Surface: This skill is designed to audit external blog content, which necessitates the ingestion of data from untrusted sources such as URLs or user-provided text. This characteristic could be used to present instructions to the agent within the audited content. The risk is mitigated by the skill's defined workflow, which focuses on editorial scoring rather than system-level actions.
  • Ingestion points: Processes blog posts via URL or direct text as outlined in the SKILL.md workflow.
  • Boundary markers: The skill does not define specific delimiters or instructional boundaries to separate the content being audited from the agent's instructions.
  • Capability inventory: The skill is limited to content analysis and reporting; it does not possess capabilities for command execution, network exfiltration, or unauthorized file access.
  • Sanitization: No specific sanitization or validation routines for external content are identified in the skill's instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 30, 2026, 11:55 PM
Security Audit — agent-trust-hub — blog-content-auditor