Review recommended
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
passThe skill is a professional workflow for Substack content creation. Its primary security consideration is a standard vulnerability surface for indirect prompt injection, as the agent is instructed to ingest and analyze external data from Substack URLs and user-provided transcripts without explicit sanitization or boundary markers.
Socket
passNo alerts
Snyk
warnRisk: MEDIUM · 1 issue
ZeroLeaks
passScore: 93/100 · 2 sections analyzed