seo-content-brief

Pass

Audited by Gen Agent Trust Hub on Jul 21, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill's primary functionality requires fetching and analyzing content from user-provided URLs and competitor search result pages. This ingestion of untrusted external data creates a potential surface for indirect prompt injection attacks, where malicious instructions embedded in third-party web content could attempt to manipulate the agent's behavior during the brief generation process.\n
  • Ingestion points: The skill fetches the target URL, sitemap, and top 5 ranking competitor pages as part of its core research process.\n
  • Boundary markers: The instructions do not provide explicit boundary markers or directives for the agent to ignore potential instructions found within the fetched data.\n
  • Capability inventory: The agent aggregates and synthesizes external data to produce writing outlines and SEO briefs, involving high-level interpretation of retrieved text.\n
  • Sanitization: No specific sanitization, filtering, or validation mechanisms are defined for the content retrieved from external sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 21, 2026, 09:13 AM
Security Audit — agent-trust-hub — seo-content-brief