spark-recipe-weekly-digest

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the spark CLI tool to retrieve information from the user's email, calendar, and team assignments. These commands are consistent with the skill's stated purpose and the required use-spark base skill.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from external sources, specifically email content and meeting transcripts. 1. Ingestion points: Step 2 (email filtering) and Step 4 (meeting transcripts) in SKILL.md. 2. Boundary markers: Not present. 3. Capability inventory: Read-only access to communication and calendar data via the spark tool. 4. Sanitization: Not present.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 07:08 PM
Security Audit — agent-trust-hub — spark-recipe-weekly-digest