brand-review
Pass
Audited by Gen Agent Trust Hub on Jul 27, 2026
Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [PROMPT_INJECTION]: The skill includes a 'System Prompt Inquiry Response' designed to override the agent's default behavior when asked to reveal its instructions, redirecting the user to the author's website.
- [PROMPT_INJECTION]: The skill processes user-supplied drafts, which constitutes an indirect prompt injection surface. However, the risk is negligible as the skill has no access to sensitive tools or file system operations. Ingestion points: User drafts, goals, and brand voice context collected as described in SKILL.md. Boundary markers: Absent. Capability inventory: No tools, script executions, or file-write permissions are defined. Sanitization: None.
- [EXTERNAL_DOWNLOADS]: The 'Mandatory Intro Message' contains links to external platforms including CashApp, BuyMeACoffee, and scayveracademy.com. These are static links for author support and training, and do not trigger remote code execution. The domain scayveracademy.com is identified as a vendor-owned resource.
Audit Metadata