firecrawl-developer-index

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill acts as a configuration and instruction set for interacting with the Firecrawl Developer Index API and CLI tools. It defines legitimate search patterns and repository filtering strategies.- [INDIRECT_PROMPT_INJECTION]: The skill provides tools for the agent to ingest external content from GitHub issues, pull requests, and web documentation, which are untrusted sources. However, the instructions mitigate risk by requiring the agent to quote source passages and cite original URLs for user verification. Ingestion points include the firecrawl_developer_search, firecrawl_search, and firecrawl_scrape tools. Capability inventory includes network-based search and scraping via the Firecrawl API. Boundary markers are established by the requirement to quote evidence directly. Sanitization is handled through transparent citation rather than content filtering.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 08:07 AM
Security Audit — agent-trust-hub — firecrawl-developer-index