gws-calendar-agenda
Pass
Audited by Gen Agent Trust Hub on Mar 20, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious code, obfuscation, or unauthorized access attempts were identified in the skill definition.
- [COMMAND_EXECUTION]: The skill executes the 'gws' binary with user-provided flags to query calendar data.
- [PROMPT_INJECTION]: The skill ingests untrusted data from Google Calendar events (Ingestion point: SKILL.md through 'gws' command output). Boundary markers and sanitization are not explicitly defined in the documentation, but the skill is limited to read-only operations and lacks exfiltration or further execution capabilities.
Audit Metadata