marketing-pricing

Pass

Audited by Gen Agent Trust Hub on Aug 8, 2026

Risk Level: SAFEPROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
  • [SAFE]: The skill is entirely instructional, consisting of markdown files that provide guidance on SaaS monetization and pricing strategy. No malicious code, scripts, or persistent mechanisms are included in the skill files.
  • [PROMPT_INJECTION]: The skill instructions for performing a "pricing page teardown" involve fetching content from external URLs. This creates a potential surface for indirect prompt injection from the content of those external pages.
  • Ingestion points: External pricing page URLs fetched by the agent's browsing tool (referenced in SKILL.md and references/pricing-page-teardown.md).
  • Boundary markers: None. The instructions do not define specific delimiters or instructions to ignore potential commands embedded in the fetched page content.
  • Capability inventory: The agent uses its browsing capability to read external web content.
  • Sanitization: No sanitization or filtering of the external content is performed before analysis.
  • [DATA_EXFILTRATION]: The skill instructs the agent to access external websites to audit pricing pages. This network activity is driven by user requests for audits and is consistent with the skill's documented purpose; no evidence of sensitive data harvesting or unauthorized exfiltration was found.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 8, 2026, 02:46 PM
Security Audit — agent-trust-hub — marketing-pricing