freee-api-skill
Pass
Audited by Gen Agent Trust Hub on Oct 10, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill handles data from external APIs that may contain untrusted user input.
- Ingestion points: Data retrieved from
/hub/tax_return/and/hub/survey/as documented inrecipes/corporate-tax-return-operations.mdandrecipes/survey-operations.md. - Boundary markers: The skill contains explicit instructions for the AI to treat retrieved content as data only and to ignore any commands or executable strings found within that content.
- Capability inventory: The skill uses
freee_api_*tools to modify records in accounting, HR, and other business modules. - Sanitization: Relies on the AI's adherence to the defensive instructions provided in the markdown guides.
- [EXTERNAL_DOWNLOADS]: The skill setup references the
freee-mcppackage and themcp.freee.co.jpdomain, which are official vendor resources.
Audit Metadata