cro-auditor
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The installation section in SKILL.md provides instructions to download the skill from the author's GitHub repository. This is a standard setup procedure and targets a source matching the skill's author context.\n- [INDIRECT_PROMPT_INJECTION]: The skill involves analyzing external marketing content and analytics data, creating a potential surface for indirect injection if the data contains hidden instructions.\n
- Ingestion points: Website copy, landing page headlines, and form elements described in SKILL.md and EXAMPLES.md.\n
- Boundary markers: The skill does not explicitly define delimiters for untrusted content.\n
- Capability inventory: The skill possesses no tools, network access, or shell execution capabilities, making exploitation of this surface highly unlikely.\n
- Sanitization: No content filtering or validation is specified.\n- [NO_CODE]: The skill is comprised of markdown documentation and instructional prompts without associated scripts or binary executables.\n- [SAFE]: No malicious patterns such as prompt injection, credential harvesting, obfuscation, or persistence mechanisms were detected. The skill's behavior matches its stated purpose.
Audit Metadata