competitor-analyst

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: No malicious patterns or security risks were identified. The content is purely instructional business strategy material.
  • [NO_CODE]: The skill consists entirely of markdown documentation and templates. There are no associated scripts, binaries, or automated tasks that could execute on a host system.
  • [PROMPT_INJECTION]: The skill instructs the agent to analyze content from external, untrusted sources such as competitor websites, social media (Reddit, Twitter/X), and review platforms (G2, Capterra). This creates a surface for indirect prompt injection if the external content contains malicious instructions.
  • Ingestion points: Web research sources specified in the 'Information Gathering' section (Step 2).
  • Boundary markers: Absent; the skill does not provide instructions to the agent to ignore potentially malicious embedded content in the researched data.
  • Capability inventory: None; the skill does not define specific tools or code execution capabilities.
  • Sanitization: Absent; there are no recommendations for validating or escaping content retrieved from external sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 04:46 PM
Security Audit — agent-trust-hub — competitor-analyst