Gmail Briefings

Security checks across malware telemetry and agentic risk

Overview

This email-management skill asks for sensitive mail access, but that access is clearly tied to its stated Gmail/Outlook/Exchange purpose and includes user-confirmation safeguards for mutations.

Install only if you are comfortable granting PortEden access to the intended mailbox. Use a separate profile for work or personal accounts, prefer narrow provider scopes, avoid fetching full message bodies unless needed, and confirm account, recipient/message ID, and action before any send, delete, reply, forward, or modify operation.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger phrase "check gmail" is broad and likely to match ordinary user requests that are not explicitly invoking this skill, which can cause the agent to activate email-reading behavior unexpectedly. Because the skill can list unread mail, read messages, and draft replies, accidental invocation could expose sensitive inbox contents or trigger actions in the user's email workflow.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal