influencer-analytics

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests and processes data from external social media platforms (TikTok, Instagram, YouTube, Bilibili, and Kuaishou), creating a surface for potential indirect prompt injection attacks.
  • Ingestion points: External influencer metrics and profile data retrieved via sandbase_call_tool as referenced in SKILL.md.
  • Boundary markers: The instructions do not define specific delimiters or instructions to ignore embedded commands within the fetched data.
  • Capability inventory: The skill is limited to read-only data retrieval using sandbase_describe_tool and sandbase_call_tool.
  • Sanitization: The instructions do not specify any validation or sanitization of the external content before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 11:31 PM
Security Audit — agent-trust-hub — influencer-analytics