skills/oakoss/agent-skills/resend/Gen Agent Trust Hub

resend

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill implements an email templating system which inherently processes external data, a common surface for indirect prompt injection.
  • Ingestion points: Contact properties such as 'firstName' and 'lastName' are interpolated into HTML email templates in 'references/contacts-and-broadcasts.md' and 'references/sending-emails.md'.
  • Boundary markers: The skill uses Resend's triple-brace variable syntax (e.g., '{{{VARIABLE}}}') to distinguish data from template logic.
  • Capability inventory: The skill enables network interactions with the Resend API to deliver transactional and marketing emails.
  • Sanitization: Security relies on Resend's backend processing and React Email's component rendering to sanitize user-provided content.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 11:51 AM
Security Audit — agent-trust-hub — resend