Back to skill

Security audit

SEO 2026 - AI Era Content Engine

Security checks for vulnerabilities and agentic risk

Overview

This SEO writing skill is a disclosed Markdown-only workflow for web research and content generation, with no executable code or persistence.

Install this when you want SEO-focused research and drafting. Expect it to use web searches and competitor-page review, and review generated statistics, claims, schema, and publishing suggestions before using them publicly.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (3)

Vague Triggers

Medium
Confidence
96% confidence
Finding
The skill description contains very broad activation phrases such as writing blog posts, keyword research, SEO, and improving rankings, which overlap heavily with common user requests. This can cause the skill to activate in situations beyond the user's intended scope, increasing the chance of unintended tool use, web access, or hidden prompt influence from this skill.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The quick-start examples trigger on generic phrases like 'write a blog post about X' and 'do keyword research for X,' which are common requests that may not require this specific skill. In a multi-skill agent environment, this ambiguity can lead to over-selection of the skill and unintended execution of its workflow, including external searches and content-generation behavior.

Autonomous Decision Making

Medium
Category
Excessive Agency
Content
## Common Mistakes

- Writing for keywords without checking search intent -- wrong format = no ranking
- Ignoring AI Overviews -- if AIO shows for your keyword, optimize for citation, not just ranking
- Thin content (<1000 words) -- deep content gets 4.3x more AI citations
- No internal linking -- destroys topic cluster authority
Confidence
75% confidence
Finding
Skill enables autonomous high-impact decisions without human-in-the-loop verification. Critical operations (destructive commands, financial transactions, data deletion) should require explicit user confirmation.

Static analysis

No suspicious patterns detected.