email-systems
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOWNO_CODE
Full Analysis
- [Prompt Injection] (SAFE): No evidence of system prompt overrides or safety bypass attempts. The persona is restricted to instructional guidance on email infrastructure.
- [Data Exposure & Exfiltration] (SAFE): No sensitive file access, hardcoded credentials, or network communication patterns detected.
- [Remote Code Execution] (SAFE): No external script downloads or dynamic execution mechanisms found.
- [Indirect Prompt Injection] (LOW): Although the skill description specifies ingestion of external files and patterns (ingestion point), the skill possesses no exploitable capabilities such as file system writes, subprocess execution, or network requests to facilitate a malicious action. Findings are restricted to informational influence.
Audit Metadata