developer-listening
Pass
Audited by Gen Agent Trust Hub on Aug 5, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill consists entirely of markdown documentation providing strategies for monitoring public developer platforms like GitHub, Reddit, and Hacker News.
- [INDIRECT_PROMPT_INJECTION]: The skill defines a workflow for ingesting data from external, untrusted public forums. While this creates a potential attack surface for indirect prompt injection at runtime if an agent follows these instructions, the skill provides no code to perform the ingestion and does not suggest bypassing any security controls.
- [DATA_EXPOSURE]: No hardcoded credentials, sensitive file paths, or data exfiltration patterns were identified. The skill focuses on public social listening rather than private data access.
Audit Metadata