UniOne Email API
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The skill bundle is benign. It provides documentation and instructions for an AI agent to interact with the UniOne Email API. All network calls are directed to the legitimate `api.unione.io` endpoint, and the `UNIONE_API_KEY` is accessed from environment variables as expected. Crucially, the `SKILL.md` explicitly instructs the AI agent to 'Never send an email without explicit user confirmation' and to 'Never log or display the full API key', demonstrating a clear intent for secure and user-controlled operation. No evidence of data exfiltration, malicious execution, persistence, obfuscation, or harmful prompt injection was found.
