social-content
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, base64-encoded commands, or unauthorized data access mechanisms were identified in the skill instructions or reference files. The skill's behavior is entirely consistent with its purpose as a social media content assistant.
- [SAFE]: The skill instructs the agent to read external context from
.agents/product-marketing-context.md(or.claude/product-marketing-context.md). While this represents a surface for indirect prompt injection, it is a standard project-level configuration for AI agents and is not considered a vulnerability in this context. - [SAFE]: Evidence for indirect prompt injection surface: 1. Ingestion points:
.agents/product-marketing-context.md(specified in SKILL.md). 2. Boundary markers: Absent. 3. Capability inventory: Limited to content generation and strategy formulation; no tool-based file writing or code execution defined. 4. Sanitization: Absent.
Audit Metadata