firecrawl-search

Pass

Audited by Gen Agent Trust Hub on Apr 4, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill possesses an attack surface for indirect prompt injection as it retrieves and processes data from external websites.
  • Ingestion points: Web search results and scraped page content obtained via 'firecrawl search' in SKILL.md.
  • Boundary markers: None specified; instructions do not include delimiters or warnings to ignore embedded instructions.
  • Capability inventory: The skill utilizes the 'Bash' tool to run CLI commands in SKILL.md.
  • Sanitization: No sanitization or filtering of external content is mentioned or implemented.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 4, 2026, 07:47 AM