persona-exec-assistant

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: No obfuscation, hardcoded credentials, or unauthorized network activity detected.\n- [SAFE]: Uses vendor-provided 'gws' CLI tool and related Google Workspace skills for its primary function.\n- [PROMPT_INJECTION]: Potential for indirect prompt injection via external data sources.\n
  • Ingestion points: Gmail inbox content via gws gmail +triage and calendar event details via gws calendar +agenda. (SKILL.md)\n
  • Boundary markers: Absent; instructions do not specify delimiters or warnings for external content.\n
  • Capability inventory: Ability to send emails (gws gmail +send) and insert calendar events (gws calendar +insert). (SKILL.md)\n
  • Sanitization: Absent; no evidence of filtering or validation of input from external sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 02:11 AM