seo-competitor-pages

Pass

Audited by Gen Agent Trust Hub on Jul 9, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill contains an attack surface for indirect prompt injection because it instructs the agent to process data from untrusted external sources.
  • Ingestion points: Untrusted data enters the agent context via the WebFetch tool when fetching competitor pricing, features, and documentation from external URLs.
  • Boundary markers: Absent. The instructions do not specify the use of delimiters (like XML tags or triple backticks) to separate external data from instructions, nor do they include warnings to ignore embedded commands within the fetched content.
  • Capability inventory: The skill's environment allows access to Bash, Read, Grep, Glob, and WebFetch, which could be exploited if an injection successfully overrides the agent's behavior.
  • Sanitization: Absent. There is no mention of validating or sanitizing the data retrieved from competitor websites before it is interpolated into the prompt or used for page generation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 9, 2026, 09:08 PM
Security Audit — agent-trust-hub — seo-competitor-pages