content-strategy
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill defines a process for analyzing untrusted external data, which creates a surface for indirect prompt injection attacks.
- Ingestion points: The instructions direct the agent to process sales transcripts, customer survey responses, keyword exports (CSV/Excel), and web search results from forums like Reddit and Quora (SKILL.md).
- Boundary markers: The skill does not define specific delimiters or instructions to ignore potential commands embedded within the provided data sources.
- Capability inventory: The skill focuses on analytical reasoning and strategy output; it does not request dangerous tools such as filesystem writes or shell execution.
- Sanitization: There are no instructions for the agent to filter or sanitize input from external transcripts or forum posts before processing them.
Audit Metadata