wecom-edit-todo

Pass

Audited by Gen Agent Trust Hub on Mar 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill facilitates legitimate WeChat Work todo management operations (creation, updates, and deletion) using the designated wecom_mcp tool.
  • [SAFE]: Security-conscious workflows are defined, specifically requiring the agent to use authoritative skills (wecom-contact-lookup, wecom-get-todo-list) to resolve user and todo identifiers, preventing potential ID-guessing attacks.
  • [SAFE]: The skill enforces a user confirmation step for sensitive actions like deleting todos or rejecting assignments, mitigating the risk of accidental or unauthorized data loss.
  • [SAFE]: No malicious patterns such as prompt injection, obfuscation, or unauthorized external data transfers were detected in the instructions or metadata.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 21, 2026, 04:45 PM