seo-forensic-incident-response

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to ingest and analyze untrusted data from external sources, creating an attack surface for indirect prompt injection.
  • Ingestion points: The instructions direct the agent to analyze Google Search Console exports, web analytics data (GA4/Matomo), server/CDN logs, and deployment/change logs (SKILL.md).
  • Boundary markers: There are no instructions defining delimiters or explicit warnings to the agent to disregard potential instructions embedded within the analyzed data.
  • Capability inventory: The skill does not define or request any active capabilities such as shell command execution, file-system writes, or network requests across its instructions.
  • Sanitization: No sanitization, validation, or filtering procedures are described for the external content before processing.
  • [NO_CODE]: The skill consists entirely of natural language instructions for the agent and does not include any scripts, compiled binaries, or tool configurations, which significantly reduces the direct execution risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 11:55 AM
Security Audit — agent-trust-hub — seo-forensic-incident-response