notion-spec-to-implementation

Pass

Audited by Gen Agent Trust Hub on Jul 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes legitimate Notion integration tools to manage project artifacts. Access to external data is restricted to the specific Notion environment configured by the user.
  • [SAFE]: The Base64 encoded content found in the notion-small.svg file is a standard embedded PNG image and does not contain hidden commands or malicious scripts.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: All data operations are conducted through scoped Notion MCP tools. There are no attempts to exfiltrate sensitive local files or credentials to external third-party domains.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes content from external Notion specification pages. While it does not include explicit boundary markers (e.g., delimiters) to separate instructions from data, the risk is inherent to the intended primary purpose of the skill and is managed by the model's interpretation logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 21, 2026, 12:24 AM
Security Audit — agent-trust-hub — notion-spec-to-implementation