NYC

tech-entrepreneur-coach-adhd

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • Indirect Prompt Injection (LOW): The skill is susceptible to indirect prompt injection due to its ability to ingest untrusted data from the web while having capabilities to modify the filesystem.
  • Ingestion points: mcp__firecrawl__firecrawl_search, mcp__brave-search__brave_web_search, and WebFetch (listed in SKILL.md).
  • Boundary markers: Absent; the instructions do not include delimiters or warnings to ignore embedded instructions in external content.
  • Capability inventory: Write, Edit, and TodoWrite (listed in SKILL.md).
  • Sanitization: Absent; no sanitization or validation of external content is described in the provided files.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 05:50 PM