wecom-meeting-manage
Pass
Audited by Gen Agent Trust Hub on Apr 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines legitimate workflows for managing enterprise meeting data using the wecom_mcp tool. All operations are aligned with the skill's stated administrative purpose.
- [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection as it processes data retrieved from meeting and contact query tools. 1. Ingestion points: meeting information from wecom-meeting-query and user lists from wecom-contact-lookup. 2. Boundary markers: None explicitly defined in the instructions. 3. Capability inventory: modification of meeting status and participants through wecom_mcp tool calls. 4. Sanitization: None explicitly defined. While an injection surface exists, it is considered an operational risk inherent to the skill's primary function and is mitigated by the restricted scope of the authorized tools.
Audit Metadata