agency-quick
Pass
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted content from external websites via the WebFetch tool. 1. Ingestion points: Content is retrieved from user-provided URLs in Step 1. 2. Boundary markers: The instructions lack delimiters to isolate external content or warnings to ignore embedded instructions. 3. Capability inventory: The skill utilizes the WebFetch tool for site retrieval. 4. Sanitization: No evidence of validation or filtering for external data is present.
Audit Metadata