competitor-analysis
Pass
Audited by Gen Agent Trust Hub on Mar 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's stated capabilities and process integrations are consistent with its purpose of providing competitive intelligence and market positioning analysis.- [PROMPT_INJECTION]: The skill ingests data from external websites via WebSearch and WebFetch tools (SKILL.md). While this creates a surface for indirect prompt injection from untrusted external content, no malicious payloads are present in the provided instructions. No specific boundary markers or sanitization logic are defined to isolate external content, though this is typical for this class of analysis skill.- [DATA_EXFILTRATION]: No evidence of unauthorized data collection, hardcoded credentials, or exfiltration of sensitive local files was found.- [REMOTE_CODE_EXECUTION]: The skill does not perform any remote code downloads, package installations, or dynamic code execution. Integration with internal JavaScript files for processing is mentioned but no executable code is provided for analysis.
Audit Metadata