apple-notes
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
memoCLI tool from a third-party repository (antoniorodr/memo) via the Homebrew package manager to perform its core functions. - [COMMAND_EXECUTION]: The skill instructions direct the agent to execute the
memocommand-line utility to create, search, edit, and delete notes within the local Apple Notes application. - [PROMPT_INJECTION]: The skill interacts with external data (personal notes) which represents a surface for indirect prompt injection. Note content is ingested into the agent context without explicit boundary markers or sanitization, though this is inherent to the skill's purpose of managing notes.
Audit Metadata