webex-user-context
Pass
Audited by Gen Agent Trust Hub on Jul 30, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill processes untrusted external data from the WebEx Messages API and People API, creating an indirect prompt injection surface.
- Ingestion points: The skill reads recent messages and user profile details from the workspace (SKILL.md).
- Boundary markers: No delimiters or explicit instructions to ignore embedded commands within the ingested data are defined.
- Capability inventory: The skill is limited to WebEx API interactions (People, Room Memberships, Messages). It does not request shell access, code execution, or network access to arbitrary domains.
- Sanitization: While privacy guidelines are provided, there is no technical description of sanitizing or escaping the content retrieved from external sources before it is processed by the agent.
Audit Metadata