cro-auditor

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The installation section in SKILL.md provides instructions to download the skill from the author's GitHub repository. This is a standard setup procedure and targets a source matching the skill's author context.\n- [INDIRECT_PROMPT_INJECTION]: The skill involves analyzing external marketing content and analytics data, creating a potential surface for indirect injection if the data contains hidden instructions.\n
  • Ingestion points: Website copy, landing page headlines, and form elements described in SKILL.md and EXAMPLES.md.\n
  • Boundary markers: The skill does not explicitly define delimiters for untrusted content.\n
  • Capability inventory: The skill possesses no tools, network access, or shell execution capabilities, making exploitation of this surface highly unlikely.\n
  • Sanitization: No content filtering or validation is specified.\n- [NO_CODE]: The skill is comprised of markdown documentation and instructional prompts without associated scripts or binary executables.\n- [SAFE]: No malicious patterns such as prompt injection, credential harvesting, obfuscation, or persistence mechanisms were detected. The skill's behavior matches its stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 08:54 PM
Security Audit — agent-trust-hub — cro-auditor