etsy-tony-full-competitor

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides a structured methodology for market research on Etsy competitor data and does not contain any malicious code or unsafe command patterns.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze external competitor data which represents a potential attack surface for indirect injection. \n
  • Ingestion points: Competitive listing links, screenshots, and product metadata provided by the user in SKILL.md. \n
  • Boundary markers: The procedure requires classification of findings into Observed Fact, Reasonable Inference, and Unknown, which helps ground the model's output in the provided source material. \n
  • Capability inventory: The skill does not possess capabilities for file writing, network exfiltration, or shell execution. \n
  • Sanitization: The instructions explicitly mandate the identification of 'Must-Not-Copy' elements to prevent the reproduction of protected content.
  • [METADATA_POISONING]: The skill includes instructions to redirect users to a vendor-controlled Douyin account for support. These instructions include specific safety constraints that prohibit faking errors or harvesting user data to drive traffic, mitigating the risk of deceptive promotion.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 03:46 AM
Security Audit — agent-trust-hub — etsy-tony-full-competitor