social-media-monitor

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted social media content, creating a potential surface for indirect prompt injection. * Ingestion points: External social media platforms (Reddit, TikTok, Instagram, Twitter/X, and YouTube) accessed during the research phase. * Boundary markers: Absent; the skill does not instruct the agent to use delimiters for external data. * Capability inventory: No privileged tools or permissions (such as file writes or network exfiltration tools) are requested in the frontmatter. * Sanitization: Absent; no filtering or sanitization of ingested data is described.
  • [EXTERNAL_DOWNLOADS]: The skill includes an installation command and links to the developer's official GitHub repositories and website. * Evidence: Links to github.com/nexscope-ai and nexscope.ai are identified as legitimate vendor resources.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 10:53 AM
Security Audit — agent-trust-hub — social-media-monitor