faion-smm-manager
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- Prompt Injection (SAFE): No instructions attempting to override agent behavior, bypass safety filters, or extract system prompts were detected. The instructional language used in the templates and strategies is standard for marketing content.
- Data Exposure & Exfiltration (SAFE): No hardcoded credentials, API keys, or sensitive local file paths (e.g., ~/.ssh, .env) were found. The skill does not perform any network operations to transmit data.
- Remote Code Execution & Dependencies (SAFE): No external code packages, scripts, or remote execution patterns were identified. The skill consists entirely of markdown documentation.
- Obfuscation (SAFE): No encoded content (Base64), zero-width characters, homoglyphs, or other obfuscation techniques were detected across the 42 files.
- Privilege Escalation & Persistence (SAFE): The skill contains no commands or scripts capable of modifying system permissions, installing services, or creating persistence mechanisms.
- Indirect Prompt Injection (SAFE): While the skill describes workflows for processing external social media content, it does not include any automated data ingestion logic or executable capabilities (e.g., subprocesses) that would create an exploitable attack surface.
- Metadata Poisoning (SAFE): Skill metadata is consistent with the stated marketing purpose and contains no hidden instructions.
Audit Metadata