umbraco-collection-action

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate development guidance and code templates for extending the Umbraco backoffice functionality, following platform best practices.
  • [EXTERNAL_DOWNLOADS]: The skill references and suggests fetching documentation from official Umbraco domains (docs.umbraco.com). These are trusted vendor resources used for implementation guidance.
  • [INDIRECT_PROMPT_INJECTION]: The skill includes instructions to fetch and process external data from documentation URLs.
  • Ingestion points: WebFetch calls to Umbraco documentation URLs listed in SKILL.md.
  • Boundary markers: None explicitly defined.
  • Capability inventory: Read, Write, Edit, and WebFetch tools.
  • Sanitization: Not specified for the fetched documentation content.
  • Assessment: The ingestion surface is limited to official vendor documentation, posing no significant security threat.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 09:59 AM
Security Audit — agent-trust-hub — umbraco-collection-action