on-page-seo-auditor
Pass
Audited by Gen Agent Trust Hub on Mar 13, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill performs audits on external web pages, creating a surface for indirect prompt injection attacks where malicious instructions could be embedded in the audited content.\n
- Ingestion points: Untrusted data is ingested via the
WebFetchtool or manual user input of HTML/text as specified inSKILL.md.\n - Boundary markers: There are no instructions provided to the agent to treat external content as data only or to ignore embedded instructions.\n
- Capability inventory: The skill uses
WebFetchfor content reading; no high-risk capabilities like local file writing or arbitrary command execution are present.\n - Sanitization: No sanitization, escaping, or validation of the fetched HTML is performed before analysis.\n- [NO_CODE]: The skill consists entirely of markdown instructions, templates, and reference guides, with no executable scripts or system dependencies provided.
Audit Metadata