cron-guide
Pass
Audited by Gen Agent Trust Hub on Jul 15, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: No security issues detected. The file provides documentation and payload examples for the
crontool. - [INDIRECT_PROMPT_INJECTION]: The skill documents how to schedule tasks that inject text into the agent's context. This represents a potential surface for indirect prompt injection if the scheduled content includes untrusted data, although the skill itself is purely instructional.
- Ingestion points:
payload.textandpayload.messagefields in the cron JSON examples withinSKILL.md. - Boundary markers: Absent in documentation examples.
- Capability inventory: The
crontool allows for scheduling recurring agent actions and system events. - Sanitization: Not applicable as this is a documentation-only skill.
Audit Metadata