reddit-analyzer

Pass

Audited by Gen Agent Trust Hub on Sep 21, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted user-generated content from Reddit threads, which could contain instructions designed to manipulate the agent's analysis or output.
  • Ingestion points: External Reddit thread data (post title, body, and comments) is fetched via WebFetch as described in SKILL.md.
  • Boundary markers: The instructions lack explicit delimiters or "ignore instructions" directives to isolate the fetched Reddit data from the analysis instructions.
  • Capability inventory: The skill's capabilities are limited to generating structured analysis reports in Markdown format; it does not perform file system writes, network exfiltration, or command execution.
  • Sanitization: There is no mention of sanitizing, escaping, or validating the content retrieved from Reddit before it is processed by the model.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 21, 2026, 05:09 PM
Security Audit — agent-trust-hub — reddit-analyzer