landing-page-design
Pass
Audited by Gen Agent Trust Hub on May 13, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: Uses the
beltCLI to run various AI-powered applications, such asfalai/flux-dev-lorafor image generation andtavily/search-assistantfor market research. These are standard operations for the skill's intended purpose.\n- [EXTERNAL_DOWNLOADS]: References the installation of thebeltCLI tool and additional skills from theinference-shandbelt-shGitHub organizations. These references are part of the core functionality provided by the vendor ecosystem.\n- [PROMPT_INJECTION]: The skill uses search tools to gather information from external websites, creating a surface for indirect prompt injection where untrusted content could influence agent behavior.\n - Ingestion points: Market research and social proof statistics retrieved from
tavily/search-assistantandexa/answer(SKILL.md).\n - Boundary markers: No specific delimiters or instructions to ignore embedded content are used when processing search results.\n
- Capability inventory: The agent can execute
beltcommands to interact with remote AI services (SKILL.md).\n - Sanitization: No explicit sanitization or validation of the retrieved web content is performed.
Audit Metadata