onenote-webhooks-events
Pass
Audited by Gen Agent Trust Hub on Sep 12, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill provides structured instructions and reference material for OneNote integration via the Microsoft Graph API. It emphasizes using official documentation from Microsoft's learning portal and adhering to service-specific constraints, such as the lack of native delta query support for OneNote resources.
- [NO_CODE]: The skill is composed entirely of markdown instructions and references. It does not include any scripts, executables, or automated command sequences, minimizing the risk of direct execution attacks.
- [INDIRECT_PROMPT_INJECTION]: The skill defines a process for ingesting external data (OneNote page metadata). While this creates a theoretical ingestion surface, the instructions mitigate risk by requiring the use of synthetic test fixtures, auditable decision artifacts, and explicit human approval before the agent acts on real notebook content.
Audit Metadata