persona-exec-assistant
Pass
Audited by Gen Agent Trust Hub on Apr 1, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [SAFE]: No obfuscation, hardcoded credentials, or unauthorized network activity detected.\n- [SAFE]: Uses vendor-provided 'gws' CLI tool and related Google Workspace skills for its primary function.\n- [PROMPT_INJECTION]: Potential for indirect prompt injection via external data sources.\n
- Ingestion points: Gmail inbox content via
gws gmail +triageand calendar event details viagws calendar +agenda. (SKILL.md)\n - Boundary markers: Absent; instructions do not specify delimiters or warnings for external content.\n
- Capability inventory: Ability to send emails (
gws gmail +send) and insert calendar events (gws calendar +insert). (SKILL.md)\n - Sanitization: Absent; no evidence of filtering or validation of input from external sources.
Audit Metadata