trend-spotter
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from external sources (Twitter, TikTok, YouTube, Google News, Reddit, Weibo) via the
sandbase_call_toolinterface. This content could theoretically contain instructions designed to influence the agent's behavior. However, the skill includes guidelines for read-only research and source attribution to mitigate these effects. - Ingestion points: External data is retrieved from social media and news platforms via
sandbase_call_tooland processed within the agent context (SKILL.md, references/sandbase-api-map.md). - Boundary markers: No explicit delimiters or boundary markers are defined for isolating the external data content from the agent's instructions.
- Capability inventory: The skill uses
sandbase_describe_toolandsandbase_call_toolto interact with the external platform APIs. - Sanitization: No specific sanitization, filtering, or validation of the external content is mentioned before it is synthesized into research findings.
Audit Metadata