notion-spec-to-implementation
Pass
Audited by Gen Agent Trust Hub on Jul 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill utilizes legitimate Notion integration tools to manage project artifacts. Access to external data is restricted to the specific Notion environment configured by the user.
- [SAFE]: The Base64 encoded content found in the
notion-small.svgfile is a standard embedded PNG image and does not contain hidden commands or malicious scripts. - [DATA_EXPOSURE_AND_EXFILTRATION]: All data operations are conducted through scoped Notion MCP tools. There are no attempts to exfiltrate sensitive local files or credentials to external third-party domains.
- [INDIRECT_PROMPT_INJECTION]: The skill processes content from external Notion specification pages. While it does not include explicit boundary markers (e.g., delimiters) to separate instructions from data, the risk is inherent to the intended primary purpose of the skill and is managed by the model's interpretation logic.
Audit Metadata