dental-reputation-benchmark

Pass

Audited by Gen Agent Trust Hub on Jul 3, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the unifapi MCP server and UnifAPI APIs (maps, local, seo) for data retrieval. These resources are hosted on the vendor's infrastructure (unifapi.com) and are necessary for the skill's stated functionality.
  • [DATA_EXFILTRATION]: The skill is designed for read-only public-data research and uses OAuth for connections, avoiding hardcoded credentials. It does not attempt to access sensitive local system files (e.g., .ssh, .aws) or exfiltrate private user data.
  • [COMMAND_EXECUTION]: No suspicious command execution, shell piping (e.g., curl | bash), or unauthorized privilege escalation patterns were detected. Installation instructions rely on standard platform-specific plugin management commands.
  • [PROMPT_INJECTION]: No attempts to override agent behavior, bypass safety filters, or extract system prompts were found. The instructions maintain a clear professional persona as a reputation analyst.
  • [DATA_EXPOSURE]: The skill ingests untrusted external data in the form of public business reviews. However, the skill's logic is restricted to generating benchmark tables and marketing reports, with no high-risk capabilities (like file writing or code execution) that could be exploited via indirect prompt injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 3, 2026, 04:06 PM
Security Audit — agent-trust-hub — dental-reputation-benchmark