competitive-teardown

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it ingests untrusted third-party data. \n
  • Ingestion points: Competitive reviews are fetched from the iTunes Search API (entry[].content.label), and social media sentiment is gathered from platforms like Twitter/X, Reddit, and LinkedIn as specified in the Data Collection Guide. \n
  • Boundary markers: The instructions do not define boundary markers or delimiters to isolate untrusted data from the system prompt. \n
  • Capability inventory: The skill has the capability to perform network requests (GET) to external APIs and read/write local files for reporting and analysis. \n
  • Sanitization: There is no mention of sanitizing, escaping, or validating the external text content before it is processed by the agent. \n- [COMMAND_EXECUTION]: The skill mentions the use of "executable scripts" within the references/data-collection-guide.md file to automate data gathering from various sources. This indicates the skill is designed to run local code or shell commands. \n- [EXTERNAL_DOWNLOADS]: The skill performs network operations to fetch data from external services, specifically identifying the Apple iTunes Search API (itunes.apple.com) for app review extraction and referencing various social media APIs.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 08:06 PM
Security Audit — agent-trust-hub — competitive-teardown