tech-entrepreneur-coach-adhd
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- Indirect Prompt Injection (LOW): The skill is susceptible to indirect prompt injection due to its ability to ingest untrusted data from the web while having capabilities to modify the filesystem.
- Ingestion points: mcp__firecrawl__firecrawl_search, mcp__brave-search__brave_web_search, and WebFetch (listed in SKILL.md).
- Boundary markers: Absent; the instructions do not include delimiters or warnings to ignore embedded instructions in external content.
- Capability inventory: Write, Edit, and TodoWrite (listed in SKILL.md).
- Sanitization: Absent; no sanitization or validation of external content is described in the provided files.
Audit Metadata