niche-opportunity-finder

Pass

Audited by Gen Agent Trust Hub on Mar 20, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill performs web searches and accesses the author's domain, list.affitor.com, to retrieve affiliate program information. These operations are consistent with the skill's stated purpose of niche research and utilize vendor-owned infrastructure.
  • [PROMPT_INJECTION]: The skill exhibits an attack surface for indirect prompt injection as it processes untrusted content from web search results during the niche validation steps.
  • Ingestion points: Data enters the agent context via web_search queries and external data from list.affitor.com (SKILL.md, Steps 2, 3, and 4).
  • Boundary markers: The workflow does not explicitly define delimiters or instructions for the agent to ignore embedded commands in the retrieved search data.
  • Capability inventory: The skill is restricted to analytical tasks and does not have file-writing or system command execution capabilities.
  • Sanitization: There are no explicit instructions for sanitizing or validating the integrity of the external content before it is incorporated into the final report.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 20, 2026, 07:32 AM