webex-user-context

Pass

Audited by Gen Agent Trust Hub on Jul 30, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill processes untrusted external data from the WebEx Messages API and People API, creating an indirect prompt injection surface.
  • Ingestion points: The skill reads recent messages and user profile details from the workspace (SKILL.md).
  • Boundary markers: No delimiters or explicit instructions to ignore embedded commands within the ingested data are defined.
  • Capability inventory: The skill is limited to WebEx API interactions (People, Room Memberships, Messages). It does not request shell access, code execution, or network access to arbitrary domains.
  • Sanitization: While privacy guidelines are provided, there is no technical description of sanitizing or escaping the content retrieved from external sources before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 30, 2026, 04:29 PM
Security Audit — agent-trust-hub — webex-user-context