dogfood
Pass
Audited by Gen Agent Trust Hub on May 9, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: Indirect Prompt Injection Surface.
- Ingestion points: The skill ingests untrusted data from external web pages via
browser_snapshotandbrowser_visioninSKILL.md. - Boundary markers: The instructions lack explicit delimiters or guidance to treat site content exclusively as data.
- Capability inventory: The agent possesses interactive capabilities such as
browser_click,browser_type, andbrowser_navigateinSKILL.md. - Sanitization: External content is not sanitized or validated before being analyzed by the agent.
Audit Metadata