document-management
Pass
Audited by Gen Agent Trust Hub on Sep 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a reference for ServiceNow document management and does not contain malicious patterns or instructions.
- [DYNAMIC_EXECUTION]: The documentation includes examples for
snow_execute_script, which is an intended tool for running server-side logic on the ServiceNow platform for automation purposes. - [DATA_EXFILTRATION]: The skill describes
snow_attach_file, a tool capable of reading local file paths to upload data to ServiceNow. This is presented as a functional capability for document ingestion within the target ecosystem. - [INDIRECT_PROMPT_INJECTION]: The template generation logic illustrates how record data is interpolated into report templates. This is a standard architectural pattern for ServiceNow reporting and is documented here for legitimate implementation.
Audit Metadata