schema-markup-generator

Pass

Audited by Gen Agent Trust Hub on Mar 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security risks were identified in the analyzed instructions or reference documents.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: The skill uses the platform's WebFetch tool to retrieve content from URLs for schema generation. This activity is restricted to the skill's primary function and does not involve accessing sensitive local files or exfiltrating credentials to unauthorized domains.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external data from URLs via WebFetch, creating an inherent surface for indirect prompt injection. However, the risk is mitigated by the skill's specific output constraints and the lack of high-privilege capabilities.
  • Ingestion points: User-provided URLs and content retrieved via WebFetch.
  • Boundary markers: Not explicitly defined in the instructions.
  • Capability inventory: Limited to generating structured text; no shell execution, file system access, or network write capabilities.
  • Sanitization: Not explicitly implemented for the input stream.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 29, 2026, 07:25 PM