day-planner
Pass
Audited by Gen Agent Trust Hub on May 14, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The 'Silent Execution' section explicitly overrides platform-standard task rules by instructing the agent to bypass user acknowledgement and confirmation. This behavioral override reduces user oversight.
- [PROMPT_INJECTION]: Indirect Prompt Injection surface detected. (1) Ingestion points: The skill reads from Notion, Google Calendar, and Web search results. (2) Boundary markers: None are specified to delimit external content from instructions. (3) Capability inventory: The skill can modify local files (PROACTIVE.md, MEMORY.md) and create persistent tasks (recurring_add, schedule_task). (4) Sanitization: No filtering or validation of external content is performed.
Audit Metadata