programmatic-seo

Pass

Audited by Gen Agent Trust Hub on Jul 27, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill includes a 'Mandatory Content Standards' section that enforces strict output constraints, including directives such as 'Every output from this skill follows these standards without exception' and 'No warnings, notes, or disclaimers. Stick to requested output.' These instructions are designed to control the stylistic output but can be used to override standard AI behavior or suppress safety-related disclosures.
  • [PROMPT_INJECTION]: The skill processes untrusted user-supplied data regarding business context, keyword patterns, and data source contents, creating a surface for indirect prompt injection.
  • Ingestion points: User-provided context described in the 'How to Use This Skill' section of SKILL.md.
  • Boundary markers: Absent; there are no instructions to the agent to delimit or isolate user-supplied data.
  • Capability inventory: The skill has no identified capabilities for command execution, file system modification, or network access.
  • Sanitization: Absent; no sanitization or filtering logic is specified for the processed data.
  • [SAFE]: The skill explicitly directs the agent to avoid 'hidden Unicode characters' in its output, which is a positive security practice against certain types of obfuscation attacks.
  • [SAFE]: The skill does not request access to any tools, perform network requests, or attempt to execute external code or scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 27, 2026, 12:11 AM
Security Audit — agent-trust-hub — programmatic-seo