scraperapi-seo-audit

Pass

Audited by Gen Agent Trust Hub on Jun 16, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill utilizes MCP tools (mcp__ScraperAPIRemote__google_search, mcp__ScraperAPIRemote__scrape, mcp__ScraperAPIRemote__google_news) to fetch data. These are vendor-provided tools from ScraperAPI used for their intended purpose of SEO auditing.
  • [COMMAND_EXECUTION]: The skill does not execute local shell commands. It operates entirely through the provided MCP tool interfaces.
  • [CREDENTIALS_UNSAFE]: The skill metadata correctly identifies the need for SCRAPERAPI_API_KEY as an environment variable, which is a standard and safe practice for secret management in this context. No hardcoded credentials were found.
  • [PROMPT_INJECTION]: The instructions contain strict guidelines for the agent to follow specific audit workflows and reporting templates. It explicitly instructs the agent not to fabricate findings and to cite tool outputs, which enhances safety and reliability. No attempts to bypass safety filters or override system instructions were detected.
  • [DATA_EXFILTRATION]: While the skill transmits user-supplied URLs and queries to ScraperAPI, this is the primary and disclosed function of the skill. There is no evidence of exfiltrating sensitive local files or environment data to unauthorized domains.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 16, 2026, 08:27 PM
Security Audit — agent-trust-hub — scraperapi-seo-audit