fireflies-performance-tuning

Pass

Audited by Gen Agent Trust Hub on Mar 24, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill contains logic to process external meeting transcript data, which represents an indirect prompt injection surface.
  • Ingestion points: The GetTranscript GraphQL query fetches sentences.text from the Fireflies API as seen in SKILL.md.
  • Boundary markers: None are implemented in the code examples to delimit the transcript text from agent instructions.
  • Capability inventory: The skill is configured with Read, Write, and Edit tool permissions.
  • Sanitization: The provided patterns do not include sanitization or validation of the retrieved transcript content before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 24, 2026, 05:03 PM