reddit-analyzer
Pass
Audited by Gen Agent Trust Hub on Sep 21, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted user-generated content from Reddit threads, which could contain instructions designed to manipulate the agent's analysis or output.
- Ingestion points: External Reddit thread data (post title, body, and comments) is fetched via WebFetch as described in SKILL.md.
- Boundary markers: The instructions lack explicit delimiters or "ignore instructions" directives to isolate the fetched Reddit data from the analysis instructions.
- Capability inventory: The skill's capabilities are limited to generating structured analysis reports in Markdown format; it does not perform file system writes, network exfiltration, or command execution.
- Sanitization: There is no mention of sanitizing, escaping, or validating the content retrieved from Reddit before it is processed by the model.
Audit Metadata