seo-content-writer
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructions facilitate the ingestion of untrusted data, creating an attack surface for indirect prompt injection.
- Ingestion points: The workflow in SKILL.md involves reading brand-profile.json and analyzing user-supplied content. EXAMPLES.md includes auditing content provided via external URLs.
- Boundary markers: There are no defined delimiters or instructions to ignore embedded commands within the ingested content.
- Capability inventory: The skill is designed for use in environments with file-system access and shell execution capabilities.
- Sanitization: The instructions lack input validation or sanitization requirements for the processed data.
Audit Metadata