signup-flow-cro
Pass
Audited by Gen Agent Trust Hub on Mar 5, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill consists of markdown instructions and evaluation cases focused on Conversion Rate Optimization (CRO) for signup flows. It does not contain any prompt injection attempts, obfuscated code, or malicious logic.
- [DATA_EXPOSURE]: The skill instructs the agent to read ".agents/product-marketing-context.md" or ".claude/product-marketing-context.md" for context. This is a standard and expected behavior for agent skills to understand the local project environment and does not constitute unauthorized data exposure.
- [INDIRECT_PROMPT_INJECTION]: While the skill processes user-provided descriptions of signup flows, it lacks dangerous capabilities such as file writing, command execution, or network requests. The risk of indirect prompt injection is negligible as the output is restricted to text-based recommendations.
Audit Metadata