linkedin-content
Pass
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill exhibits a surface for indirect prompt injection through its research functions.
- Ingestion points: Untrusted external data is ingested via
WebSearchandWebFetchtools to identify current trends and viral posts (SKILL.md). - Boundary markers: There are no instructions or delimiters defined to prevent the agent from following malicious commands potentially embedded in the retrieved web content.
- Capability inventory: The skill is authorized to use
WriteandEdittools, which could be exploited to modify files based on injected instructions (SKILL.md). - Sanitization: The skill does not perform any sanitization or validation of the data fetched from the internet.
- [SAFE]: No hardcoded credentials, direct prompt injections, or obfuscated malicious URLs were detected in the skill files.
Audit Metadata