gws-workflow-standup-report
Pass
Audited by Gen Agent Trust Hub on Jul 15, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill invokes the
gwscommand-line utility (gws workflow +standup-report) to gather information from Google Workspace. This tool is a resource associated with the skill's vendor and is used for its primary stated purpose. - [DATA_EXPOSURE]: The skill accesses calendar events and task lists to generate summaries. While this involves sensitive personal/professional data, the skill claims to be read-only and does not demonstrate exfiltration behavior.
- [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection because it processes untrusted data from external sources.
- Ingestion points: Meeting titles/descriptions and task names/notes retrieved via the
gwsbinary inSKILL.md. - Boundary markers: No explicit markers or instructions are provided to the agent to treat external content as untrusted or to disregard instructions within the data.
- Capability inventory: Execution of the
gwscommand-line tool. - Sanitization: No sanitization or filtering of the external data is documented before it is presented to the agent for summarization.
Audit Metadata