article-writing
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process untrusted external data to generate content, creating a surface for indirect prompt injection.
- Ingestion points: The skill explicitly processes "supplied examples", "brand guidance", "notes, transcripts, or research" as identified in the
SKILL.mdbody. - Boundary markers: The instructions do not specify the use of delimiters or provide warnings to the agent to ignore instructions that might be embedded within the user-supplied source materials.
- Capability inventory: The skill is primarily a text generation tool but includes the ability to invoke the
brand-voiceskill/tool to generate aVOICE PROFILE. - Sanitization: There are no instructions for validating, filtering, or escaping the external content before it is interpolated into the writing process.
Audit Metadata