popup-cro
Pass
Audited by Gen Agent Trust Hub on May 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security risks were identified in this skill.
- [PROMPT_INJECTION]: The instructions do not contain attempts to override safety filters or bypass agent constraints. It maintains a consistent role as a conversion optimization expert.
- [DATA_EXFILTRATION]: There are no network operations or commands that access sensitive files. The mention of reading
.claude/product-marketing-context.mdis a standard practice for retrieving project-specific marketing context within the agent environment. - [REMOTE_CODE_EXECUTION]: The skill does not include any scripts, package installations, or commands to download and execute external code.
- [COMMAND_EXECUTION]: No shell commands or subprocess calls are present in the instructions.
- [OBFUSCATION]: The content is written in clear, human-readable markdown without any hidden characters, Base64 encoding, or homoglyph substitutions.
Audit Metadata