google-docs-md

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses curl to fetch content from docs.google.com. This involves well-known services and the downloads are part of the primary purpose of the skill.
  • [COMMAND_EXECUTION]: Provides bash snippets using standard tools like grep, sort, and curl to automate the extraction and downloading of documents. These commands are transparently documented.
  • [INDIRECT_PROMPT_INJECTION]: The skill's primary function is to ingest untrusted data from external Google Docs.
  • Ingestion points: External content is pulled into the agent's context or file system via curl from docs.google.com (seen in SKILL.md).
  • Boundary markers: The instructions do not define delimiters or warnings to ignore instructions found within the downloaded document content.
  • Capability inventory: The skill uses curl which has network and file-writing capabilities.
  • Sanitization: There is no mention of sanitizing, escaping, or validating the content of the Markdown file after it is downloaded.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 05:02 PM
Security Audit — agent-trust-hub — google-docs-md