analytics-tracking

Pass

Audited by Gen Agent Trust Hub on May 14, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No attempts to override system instructions or bypass safety guidelines were detected in the skill's instructions or metadata.
  • [DATA_EXFILTRATION]: No patterns of sensitive data access or exfiltration were found. The skill includes common placeholders for analytics IDs (e.g., 'G-XXXXXXXX') which are used for demonstration purposes only.
  • [REMOTE_CODE_EXECUTION]: The skill does not contain any scripts or commands that download or execute code from external sources. Implementation examples provided are static documentation.
  • [COMMAND_EXECUTION]: No dangerous shell commands or subprocess executions were identified. The instructions focus on documentation and planning.
  • [INDIRECT_PROMPT_INJECTION]: The skill mentions reading an external context file ('.claude/product-marketing-context.md'). While this is an ingestion point for untrusted data, it follows standard practices for context-aware agents and does not present an immediate security risk within the provided scope.
  • [OBFUSCATION]: No hidden characters, Base64-encoded instructions, or homoglyph-based deception were found in any of the files.
Audit Metadata
Risk Level
SAFE
Analyzed
May 14, 2026, 05:58 AM
Security Audit — agent-trust-hub — analytics-tracking