glean-shortcuts
Pass
Audited by Gen Agent Trust Hub on Mar 25, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious instructions, obfuscation, or unauthorized data access were detected in the skill.
- [COMMAND_EXECUTION]: The skill documents the use of the 'glean' CLI, which is the official tool from the vendor (gleanwork).
- [EXTERNAL_DOWNLOADS]: The skill does not perform any external downloads or execute remote code from untrusted sources.
- [PROMPT_INJECTION]: The skill ingests output from 'glean shortcuts list' which may contain untrusted data, but it does not include instructions to auto-execute or interpret that data as commands.
Audit Metadata