Skip to content
Report library
Purpose / Other

Persona Hr Coordinator Skill Security Audit

What the author says it does (original text)

Handle HR workflows — onboarding, announcements, and employee comms.

Independent security check

Do not install or run it yet

Files checked
1
Risks found
2
Could it run dangerous commands?Looks for programs run straight after downloading, remote control of your computer, and hidden commands.No risks found
Could it expose your files or keys?Looks for uploads of files containing passwords or keys, and keys written directly in the code.Risks found: 1
High risk

Employee documents may be uploaded and published to shared spaces

Source references: 3
What we found

The instructions upload onboarding documents to shared Drive and then announce a new hire by sharing their profile document in Chat. They do not require checking the document, folder permissions, Chat membership, employee consent, or minimum necessary disclosure. The protection provided by `--sanitize` is also unspecified.

Why this matters

If a document contains an address, phone number, personal email, identity information, compensation, or other HR data, choosing the wrong folder or Chat space could give unauthorized people persistent access and allow further sharing.

The skill uploads onboarding files to a shared Drive folder and shares a new hire's profile document in a Chat space. If folder or space membership is too broad, employee information could reach people who do not need it. Although `--sanitize` is required for PII-sensitive operations, the source does not define which fields it removes or require permission, consent, or minimum-disclosure checks. Users can ask the author to define sanitization and restrict the destination and shared fields.

SKILL.md:30In the instructionsOpen original file
- For new hire onboarding, create calendar events for orientation sessions with `gws calendar +insert`.- Upload onboarding docs to a shared Drive folder with `gws drive +upload`.- Announce new hires in Chat spaces with `gws workflow +file-announce` to share their profile doc.- Convert email requests into tracked tasks with `gws workflow +email-to-task`.
Show 2 other places
SKILL.md:36In the instructionsOpen original file
## Tips- Always use `--sanitize` for PII-sensitive operations.- Create a dedicated 'HR Onboarding' calendar for tracking orientation schedules.
SKILL.md:31In the instructionsOpen original file
- Upload onboarding docs to a shared Drive folder with `gws drive +upload`.- Announce new hires in Chat spaces with `gws workflow +file-announce` to share their profile doc.- Convert email requests into tracked tasks with `gws workflow +email-to-task`.
Could it delete files or keep running?Looks for broad file deletion, disk overwrites, and programs set to start automatically.No risks found
Could it bypass safety checks?Looks for skipped website security checks, excessive file access, or actions that skip your approval.Risks found: 1
Medium risk

It can change calendars and message many people without a defined approval step

Source references: 3
What we found

The instructions directly create calendar events, post Chat announcements, and send bulk Gmail messages, but do not require verification of the sending identity, recipients, space, time, body, or attachments. They also do not require draft mode or final approval.

Why this matters

A mistaken or misunderstood request could produce an organization-wide mis-send, incorrect invitations, scheduling conflicts, reputational harm, or disclosure of internal information in an announcement. Bulk sending amplifies a single targeting error.

These are direct instructions to modify calendars and send external communications, with no stated human approval, draft stage, or verification of identity, destination space, recipients, timing, body, and attachments. If the agent acts on an incorrect or ambiguous request, it could create erroneous events, disclose announcements to the wrong space, or send messages broadly by mistake. Users can restrict it to drafts and require explicit confirmation before each write or send.

SKILL.md:29In the instructionsOpen original file
## Instructions- For new hire onboarding, create calendar events for orientation sessions with `gws calendar +insert`.- Upload onboarding docs to a shared Drive folder with `gws drive +upload`.
Show 2 other places
SKILL.md:31In the instructionsOpen original file
- Upload onboarding docs to a shared Drive folder with `gws drive +upload`.- Announce new hires in Chat spaces with `gws workflow +file-announce` to share their profile doc.- Convert email requests into tracked tasks with `gws workflow +email-to-task`.
SKILL.md:33In the instructionsOpen original file
- Convert email requests into tracked tasks with `gws workflow +email-to-task`.- Send bulk announcements with `gws gmail +send` — use clear subject lines.
Could it mislead the AI or hide text?Checks the skill instructions for requests to ignore you, influence the report, or hide text in invisible characters.No risks found
Could it change links or payment recipients without asking?Looks for forced referral or payment changes combined with instructions to hide the change.No risks found

Inside this skill

3 instruction sections

This Skill is an operational HR persona that requires access to Gmail, Calendar, Drive, and Chat and relies on `gws` commands to perform workflows.

View source
SKILL.md:8In the instructionsOpen original file
    category: "persona"    requires:      bins:        - gws      skills:        - gws-gmail        - gws-calendar        - gws-drive        - gws-chat---

Its activities include creating onboarding events, uploading onboarding documents, publishing new-hire profiles in Chat, and sending bulk announcements. These operations modify organizational account data and contact other people.

View source
SKILL.md:29In the instructionsOpen original file
## Instructions- For new hire onboarding, create calendar events for orientation sessions with `gws calendar +insert`.- Upload onboarding docs to a shared Drive folder with `gws drive +upload`.- Announce new hires in Chat spaces with `gws workflow +file-announce` to share their profile doc.- Convert email requests into tracked tasks with `gws workflow +email-to-task`.- Send bulk announcements with `gws gmail +send` — use clear subject lines.

The Skill advises using `--sanitize` for personally identifiable information, but the supplied source does not define which fields it removes or require reviewing the result before publication.

View source
SKILL.md:36In the instructionsOpen original file
## Tips- Always use `--sanitize` for PII-sensitive operations.- Create a dedicated 'HR Onboarding' calendar for tracking orientation schedules.
Start here · InstructionsSKILL.md
persona-hr-coordinator
Lines connect the instruction file to its sections, not an observed execution order. Select a section to read the source.
Files and check records1 files

Coverage and gaps

Content covered in each file

These are the source ranges included in this check, not a guarantee that every issue has been resolved.

  • SKILL.mdFull text included

This report is for the version above. We read the available code and instructions without running the skill or checking extra packages it installs. This is not a promise of safety: a different version or setup may behave differently.

  • SKILL.mdInstructions
Lines read
39
File checksum (to compare versions)
ac272c62127b9e6bb37f50969d52150905088ed84fa81c88c2cd00224b6c2431