etsy-shipping-strategy
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFENO_CODEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns or dangerous operations were detected. The content is informational and strategic in nature.
- [NO_CODE]: The provided file contains markdown instructions and metadata but does not include any executable scripts, binaries, or tool definitions.
- [EXTERNAL_DOWNLOADS]: The installation instructions reference the vendor's own repository (nexscope-ai/eCommerce-Skills) via npx. This is consistent with the skill's authorship.
- [INDIRECT_PROMPT_INJECTION]: The skill identifies a surface for indirect prompt injection as it analyzes shop-specific data. 1. Ingestion points: External shop data analyzed via prompts (SKILL.md). 2. Boundary markers: None explicitly defined. 3. Capability inventory: No high-risk capabilities such as network writes, file system modifications, or subprocess execution are defined. 4. Sanitization: No sanitization logic is present in the markdown documentation.
Audit Metadata