social-media-analyzer

Pass

Audited by Gen Agent Trust Hub on Jul 27, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill is designed to ingest and analyze external data from social media platforms, creating a potential surface for indirect prompt injection where malicious instructions embedded in the data could influence agent behavior.
  • Ingestion points: The skill explicitly requests and processes "platform exports" and "post-level data" from external sources.
  • Boundary markers: There are no specified delimiters or instructions to treat external data as untrusted content.
  • Capability inventory: The skill focus is limited to analytical reporting and data normalization; no dangerous tools such as filesystem writes or network requests are utilized.
  • Sanitization: The instructions lack any requirement to sanitize, validate, or filter content from the imported data files.
  • [NO_CODE]: No executable scripts, binaries, or configuration files that trigger code execution were detected. The skill logic is entirely based on natural language instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 27, 2026, 12:11 AM
Security Audit — agent-trust-hub — social-media-analyzer