recoup-content-reactive-post
Pass
Audited by Gen Agent Trust Hub on Jul 23, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill uses
curl,jq, andsedto automate API requests and process local artist metadata. These are standard operations for a workspace-integrated tool. - [PROMPT_INJECTION]: The skill uses instructions in
SKILL.mdandreferences/analyze-gate.mdto establish a mandatory review process. This prevents the agent from reporting success prematurely, serving as a protective quality barrier rather than a malicious bypass. - [EXTERNAL_DOWNLOADS]: Integrated API calls to
api.recoupable.devare used to retrieve artist metrics, career milestones, and to perform video analysis. These are functional dependencies of the Recoup platform. - [SAFE]: The skill ingests external research data from
research/webandresearch/deep(documented inreferences/research-context.md). While this represents a potential surface for indirect prompt injection from web-sourced text, the data is primarily used to inform creative direction and tone, and the agent is instructed to prioritize structured workspace data for factual content.
Audit Metadata