etsy-shipping-strategy

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFENO_CODEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: No malicious patterns or dangerous operations were detected. The content is informational and strategic in nature.
  • [NO_CODE]: The provided file contains markdown instructions and metadata but does not include any executable scripts, binaries, or tool definitions.
  • [EXTERNAL_DOWNLOADS]: The installation instructions reference the vendor's own repository (nexscope-ai/eCommerce-Skills) via npx. This is consistent with the skill's authorship.
  • [INDIRECT_PROMPT_INJECTION]: The skill identifies a surface for indirect prompt injection as it analyzes shop-specific data. 1. Ingestion points: External shop data analyzed via prompts (SKILL.md). 2. Boundary markers: None explicitly defined. 3. Capability inventory: No high-risk capabilities such as network writes, file system modifications, or subprocess execution are defined. 4. Sanitization: No sanitization logic is present in the markdown documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 10:53 AM
Security Audit — agent-trust-hub — etsy-shipping-strategy