channel-discovery

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill incorporates an attack surface for indirect prompt injection as it requires the agent to ingest data from external web searches and ad libraries (Step 4) to verify channel viability and competitor presence. While this is a vulnerability surface, the risk is inherent to the skill's legitimate research purpose and does not include exploitable capabilities like code execution or file system writes.
  • Ingestion points: External research data gathered from search engines and advertising platforms (Reddit, Meta, LinkedIn, etc.) in Step 4.
  • Boundary markers: No explicit delimiters or instructions are provided to the agent to treat external content as untrusted or to ignore instructions embedded within search results.
  • Capability inventory: The skill utilizes internet access to perform research.
  • Sanitization: No specific filtering or sanitization of external data is defined within the skill instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 08:06 AM
Security Audit — agent-trust-hub — channel-discovery