ai-seo
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill is composed of Markdown instructions for the agent and user, with no executable code, script components, or suspicious automation patterns detected.- [INDIRECT_PROMPT_INJECTION]: The skill instructions include a step to read local project context files, which constitutes a data ingestion surface.
- Ingestion points: Reads .agents/product-marketing-context.md or .claude/product-marketing-context.md as specified in SKILL.md.
- Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present for the ingested context.
- Capability inventory: The skill functions in an advisory capacity and lacks capabilities for file modification, network exfiltration, or shell command execution.
- Sanitization: There is no specified sanitization or validation for the content of the marketing context files.
Audit Metadata