venice-api-overview

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill documents API endpoints that ingest and process external or untrusted data, creating a potential surface for indirect prompt injection.
  • Ingestion points: The POST /augment/scrape and POST /augment/search endpoints described in SKILL.md are designed to retrieve and process external web content into the agent context.
  • Boundary markers: The documentation does not specify the use of delimiters or 'ignore' instructions to isolate embedded commands in the content returned by these endpoints.
  • Capability inventory: The skill identifies tools for web scraping, text parsing, and large language model inference via the api.venice.ai infrastructure.
  • Sanitization: No explicit sanitization, validation, or filtering mechanisms are described for the content ingested through the documented search and scraping utilities.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 09:34 PM
Security Audit — agent-trust-hub — venice-api-overview