NYC
skills/smithery/ai/social-media/Gen Agent Trust Hub

social-media

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • Indirect Prompt Injection (LOW): The skill directs the agent to read research findings from research/[slug].md (generated by a researcher subagent) without implementing boundary markers or sanitization, creating an attack surface for malicious instructions to influence the agent's behavior. 1. Ingestion points: Research findings are read from the research/ directory after being fetched from external sources. 2. Boundary markers: Absent; no instructions are provided to distinguish research data from the agent's core instructions. 3. Capability inventory: The agent has the ability to write files to the local system and execute tools such as generate_social_image and task. 4. Sanitization: Absent; the skill does not validate the slug parameter or the content of the research findings.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:36 PM