search-page-audit
Pass
Audited by Gen Agent Trust Hub on Mar 25, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches HTML source code, robots.txt, sitemap.xml, and llms.txt files from external domains to evaluate technical SEO and AI crawler compatibility.- [PROMPT_INJECTION]: The skill demonstrates an indirect prompt injection surface because it ingests untrusted data from third-party websites. A malicious site could attempt to embed instructions within its HTML or metadata to influence the agent's audit report. Evidence: The skill lacks explicit boundary markers or sanitization instructions to separate fetched content from the agent's core instructions. Capability Inventory: The agent is limited to analysis and reporting based on the ingested data, which mitigates the impact of potential injection.
Audit Metadata