linkedin-content

Pass

Audited by Gen Agent Trust Hub on Mar 11, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill exhibits a surface for indirect prompt injection through its research functions.
  • Ingestion points: Untrusted external data is ingested via WebSearch and WebFetch tools to identify current trends and viral posts (SKILL.md).
  • Boundary markers: There are no instructions or delimiters defined to prevent the agent from following malicious commands potentially embedded in the retrieved web content.
  • Capability inventory: The skill is authorized to use Write and Edit tools, which could be exploited to modify files based on injected instructions (SKILL.md).
  • Sanitization: The skill does not perform any sanitization or validation of the data fetched from the internet.
  • [SAFE]: No hardcoded credentials, direct prompt injections, or obfuscated malicious URLs were detected in the skill files.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 11, 2026, 10:46 PM