marketing-strategy
Pass
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill processes untrusted user input during its interactive phases and possesses file-system capabilities, creating a surface for indirect prompt injection.\n- Ingestion points: User responses are collected throughout the four interview phases defined in SKILL.md.\n- Boundary markers: There are no explicit markers or instructions to isolate user input or prevent the agent from executing instructions embedded within responses.\n- Capability inventory: The skill is granted 'Read', 'Write', and 'Edit' tool permissions to manage the strategy JSON profile.\n- Sanitization: No input validation or sanitization is performed on user answers before they are processed or exported.
Audit Metadata