auto-reply-is-not-a-reply
Pass
Audited by Gen Agent Trust Hub on Aug 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of natural language instructions and organizational guidelines. It does not include scripts, configuration files, or command execution patterns.
- [DATA_EXFILTRATION]: No network calls or sensitive data access patterns were identified.
- [PROMPT_INJECTION]: No evidence of malicious prompt injection or attempts to bypass AI safety filters.
- [INDIRECT_PROMPT_INJECTION]: While the skill describes processing untrusted inbound emails (an ingestion point for indirect prompt injection), it does not provide code or tools to facilitate this processing, and the instructions focus on organizational classification rather than unsafe interpolation.
Audit Metadata