glean-entities

Pass

Audited by Gen Agent Trust Hub on Mar 24, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill invokes the glean CLI to list and read people profiles and entities.
  • [PROMPT_INJECTION]: The skill has an indirect prompt injection surface because it reads data from the Glean database into the prompt.
  • Ingestion points: Results from glean entities list and glean entities read-people in SKILL.md.
  • Boundary markers: No boundary markers or delimiters are used for the external data.
  • Capability inventory: Shell command execution via the glean tool.
  • Sanitization: No sanitization of ingested data is performed.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 24, 2026, 09:08 AM