icp-research
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill directs the agent to perform research on public community platforms like Reddit, Facebook, and industry forums to extract customer language and pain points. This activity involves processing untrusted external data.
- Ingestion points: SKILL.md (Section 7) specifies extracting language from Reddit, Facebook Groups, Discord, Slack, and various review sites.
- Boundary markers: The instructions lack specific boundary markers or directives to the agent to ignore potential instructions embedded within the scraped forum data.
- Capability inventory: The skill uses the agent's research and writing capabilities to synthesize external data into user-facing marketing profiles.
- Sanitization: No sanitization or validation protocols are defined for the data retrieved from external communities.
Audit Metadata