manage-desktop-flows

Pass

Audited by Gen Agent Trust Hub on Aug 9, 2026

Risk Level: SAFE
Full Analysis
  • Interaction with RPA Services: The skill uses a comprehensive set of Model Context Protocol (MCP) tools to interact with Power Automate Desktop. These tools provide a controlled interface for listing, creating, and executing robotic process automation (RPA) flows and managing machine infrastructure.
  • Indirect Prompt Injection Consideration: Like many skills that retrieve data from external services (e.g., flow names, machine group descriptions, or run outputs), there is a potential surface for indirect prompt injection. If an external system contains instructions designed to influence the agent's behavior, the agent might interpret them. This is a standard consideration for agentic skills, and users should ensure that the metadata within their Power Automate environments is managed by authorized personnel.
  • Least Privilege Configuration: The skill defines a specific list of allowed-tools, which is a positive security practice. This ensures the agent's execution environment is scoped to the necessary capabilities required for desktop flow management.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 9, 2026, 01:15 AM
Security Audit — agent-trust-hub — manage-desktop-flows