marketing-ideas
Pass
Audited by Gen Agent Trust Hub on Apr 5, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill incorporates a surface for indirect prompt injection by instructing the agent to ingest data from an external local file to tailor its marketing recommendations.
- Ingestion points: The file
.claude/product-marketing-context.mdis read at startup if it exists (defined inSKILL.md). - Boundary markers: There are no explicit delimiters or system instructions provided to the agent to treat the content of the context file as untrusted data or to ignore embedded instructions.
- Capability inventory: The skill is primarily designed for text-based strategic advice; analysis of the provided files (
SKILL.md,README.md,references/ideas-by-category.md) shows no use of shell execution, network exfiltration tools, or file-writing capabilities. - Sanitization: No sanitization or validation logic is defined for the content loaded from the context file.
Audit Metadata