segment-cdp
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOWNO_CODE
Full Analysis
- [NO_CODE] (SAFE): The skill consists entirely of instructional Markdown content. It does not include any Python or JavaScript code, shell scripts, or binary files that could be used to execute commands or manipulate the host system.
- [PROMPT_INJECTION] (LOW): The skill involves processing user-provided event schemas and identity data, creating a surface for Indirect Prompt Injection (Category 8). However, as the skill lacks 'write' or 'execute' capabilities, the impact is limited to influencing the agent's textual output. Evidence: 1. Ingestion points: Event schemas and tracking plan definitions in prompt; 2. Boundary markers: Absent; 3. Capability inventory: None (no tools/scripts); 4. Sanitization: Absent.
- [EXTERNAL_DOWNLOADS] (INFO): The text mentions the legitimate '@segment/analytics-node' library as a pattern for server-side tracking, but it does not provide commands (like npm install) to download or execute code from external registries.
Audit Metadata