daily-social-agent

Pass

Audited by Gen Agent Trust Hub on Apr 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements legitimate social media management workflows without any malicious patterns or unauthorized operations.
  • [DATA_EXPOSURE]: The skill uses placeholders for environment-specific identifiers (Slack channel IDs, Notion source IDs, Typefully IDs). No hardcoded credentials or secrets were found.
  • [COMMAND_EXECUTION]: The skill uses a registry search tool to verify the status of the Slack connector before execution, which is a standard environment check.
  • [INDIRECT_PROMPT_INJECTION]: While the skill ingests untrusted data from Slack channels, the risk of indirect prompt injection is mitigated by mandatory human review of all generated drafts and explicit instructions that prohibit auto-publishing.
  • [DATA_EXFILTRATION]: Data operations (reading from Slack and writing to Typefully/Notion) are strictly aligned with the skill's stated purpose and require manual user configuration of target destinations.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 4, 2026, 06:40 AM