serp-analysis
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill does not exhibit any malicious behaviors such as credential exfiltration, remote code execution, or persistence mechanisms. All tool calls are performed through a managed gateway.
- [INDIRECT_PROMPT_INJECTION]: The skill processes data from external search engine results pages, which constitutes an untrusted data ingestion surface.
- Ingestion points: Data is received from
sandbase_call_toolwhen invoking DataForSEO APIs (SKILL.md, references/sandbase-api-map.md). - Boundary markers: The instructions do not specify explicit delimiters for the external content.
- Capability inventory: The skill is limited to search analysis and data reporting; no dangerous capabilities such as file-writing or subprocess execution are present.
- Sanitization: No specific sanitization or filtering of search result content is mentioned.
Audit Metadata