gws-workflow-standup-report

Pass

Audited by Gen Agent Trust Hub on Jul 15, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill invokes the gws command-line utility (gws workflow +standup-report) to gather information from Google Workspace. This tool is a resource associated with the skill's vendor and is used for its primary stated purpose.
  • [DATA_EXPOSURE]: The skill accesses calendar events and task lists to generate summaries. While this involves sensitive personal/professional data, the skill claims to be read-only and does not demonstrate exfiltration behavior.
  • [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection because it processes untrusted data from external sources.
  • Ingestion points: Meeting titles/descriptions and task names/notes retrieved via the gws binary in SKILL.md.
  • Boundary markers: No explicit markers or instructions are provided to the agent to treat external content as untrusted or to disregard instructions within the data.
  • Capability inventory: Execution of the gws command-line tool.
  • Sanitization: No sanitization or filtering of the external data is documented before it is presented to the agent for summarization.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 15, 2026, 01:27 PM
Security Audit — agent-trust-hub — gws-workflow-standup-report