NYC

seo-visibility-expert

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [Indirect Prompt Injection] (LOW): The skill is susceptible to indirect prompt injection due to its core functionality of auditing external web content.
  • Ingestion points: Untrusted data is ingested via the WebFetch and WebSearch tools during technical SEO audits of third-party websites.
  • Boundary markers: The instructions lack explicit requirements for the agent to use delimiters or ignore embedded instructions when processing fetched data.
  • Capability inventory: The skill allows use of high-privilege tools including Bash, Write, and Edit, which could be exploited if the agent is successfully manipulated by external instructions.
  • Sanitization: There are no instructions for sanitizing or validating external input before it is processed or used in subsequent operations.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 05:51 PM