analytics-tracking
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOW
Full Analysis
- [SAFE] (SAFE): Comprehensive analysis of the 4 provided files shows no malicious code, command execution, or exfiltration patterns. All scripts and snippets are educational examples for user implementation.
- [INDIRECT_PROMPT_INJECTION] (LOW): The skill includes a instruction to read
.claude/product-marketing-context.mdfor context gathering. - Ingestion points: .claude/product-marketing-context.md (referenced in SKILL.md).
- Boundary markers: Absent.
- Capability inventory: Display and internal reasoning only; no write or execute capabilities detected.
- Sanitization: Absent.
- Risk: Minimal, as it only influences agent questioning behavior.
- [EXTERNAL_DOWNLOADS] (LOW): References to external scripts (Google's gtag.js and Facebook's fbevents.js) point to trusted sources and are intended for the user's website implementation, not agent execution.
Audit Metadata