patient-question-content

Pass

Audited by Gen Agent Trust Hub on Jul 3, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill utilizes the UnifAPI platform for data retrieval and recommends installing the unifapi-agent/agents plugin from the marketplace. These are official resources provided by the skill's author to enable data connectivity.
  • [PROMPT_INJECTION]: The skill processes untrusted external data from public forums, creating a surface for indirect prompt injection.
  • Ingestion points: Verbatim patient questions and comments are ingested via the reddit/posts/{id}/comments and seo/serp tools.
  • Boundary markers: The instructions do not specify any delimiters or safety warnings for the agent when processing this external text.
  • Capability inventory: The skill has no capabilities to execute shell commands, write files, or perform network operations; it only generates markdown-based marketing plans.
  • Sanitization: No specific sanitization or filtering of the external patient phrasing is described in the workflow.
  • [SAFE]: The skill operates entirely in a read-only capacity for marketing research and does not access sensitive system files or credentials. It utilizes OAuth for secure authentication with the data provider and follows established patterns for AI agent skills.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 3, 2026, 04:06 PM
Security Audit — agent-trust-hub — patient-question-content