seo-sitemap
Pass
Audited by Gen Agent Trust Hub on Jun 26, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface because it is designed to ingest and process untrusted XML sitemap data from external sources.
- Ingestion points: The skill reads external XML content using the
WebFetchandReadtools during sitemap analysis (Mode 1). - Boundary markers: The instructions do not define delimiters or specific "ignore" markers to prevent the agent from being influenced by malicious text or instructions hidden within XML comments or tags.
- Capability inventory: The skill has access to powerful tools including
Bash(shell execution),Write(file system modification), andWebFetch(network requests). - Sanitization: There is no specified mechanism for sanitizing or escaping the content of the sitemaps before the agent processes them or uses the data to generate new files like
VALIDATION-REPORT.mdorsitemap.xml.
Audit Metadata