azure-video-indexer

Pass

Audited by Gen Agent Trust Hub on Apr 10, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches documentation content from official Microsoft domains (learn.microsoft.com). This behavior is transparently documented in the compatibility section and matches the skill's primary purpose.
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it retrieves and processes content from external URLs.
  • Ingestion points: Remote content is ingested using the mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage tools.
  • Boundary markers: The skill does not define boundary markers (such as XML tags or delimiters) to isolate the fetched documentation from agent instructions.
  • Capability inventory: The skill utilizes tools to fetch web pages and read local files.
  • Sanitization: No sanitization or verification of the external content's integrity is performed before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 10, 2026, 02:00 AM