ai-visibility-audit
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests and analyzes untrusted data from external websites to identify citation gaps. Ingestion points: The skill utilizes the
browser/markdowntool to read external web pages identified bygeo/serpandgeo/mentions/top-pagesas described inSKILL.md. Boundary markers: There are no instructions providing boundary markers to isolate the external web content from the agent's logic. Capability inventory: The skill performs automated analysis of AI search result data and browser-rendered markdown content. Sanitization: The instructions do not describe any sanitization, filtering, or validation of the markdown content retrieved from external sources. - [EXTERNAL_DOWNLOADS]: The skill references and installs external resources originating from the vendor. The
README.mddirects users to install additional functionality usingnpx skills add unifapi-agent/agentsand/plugin install unifapi@unifapi. It also requires a connection to a remote MCP server athttps://mcp.unifapi.comto retrieve live audit evidence.
Audit Metadata