ecommerce-seo-auditor

Pass

Audited by Gen Agent Trust Hub on Aug 28, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process untrusted external data, including website URLs, HTML source code, robots.txt files, and crawl exports, to generate SEO audits.
  • [INGESTION_POINTS]: Inputs include rendered pages, HTML, and sitemaps provided by the user or fetched from URLs.
  • [BOUNDARY_MARKERS]: The skill instructs the agent to classify all conclusions as 'Confirmed', 'Data-dependent', or 'Not assessed', providing a logical framework to prevent the agent from being misled by data content.
  • [CAPABILITY_INVENTORY]: The skill's capabilities are restricted to analysis and text generation; it lacks tools for file system modification, shell command execution, or unauthorized network operations.
  • [SAFE]: The skill references external URLs for 'AI Product Visibility' and 'GEO Score Checker'. These links point exclusively to the author's verified domain (nexscope.ai) and are used for legitimate service handoffs rather than unauthorized data exfiltration.
  • [SAFE]: The installation instructions utilize 'npx' to add the skill from the vendor's repository, which is a standard and expected deployment method for skills in this ecosystem.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 28, 2026, 09:05 AM
Security Audit — agent-trust-hub — ecommerce-seo-auditor