Skip to content
Report library
Purpose / Other

Persona It Admin Skill Security Audit

What the author says it does (original text)

Administer IT — monitor security and configure Workspace.

Independent security check

Security risks found

Files checked
1
Risks found
1
Could it run dangerous commands?Looks for programs run straight after downloading, remote control of your computer, and hidden commands.No risks found
Could it expose your files or keys?Looks for uploads of files containing passwords or keys, and keys written directly in the code.No risks found
Could it delete files or keep running?Looks for broad file deletion, disk overwrites, and programs set to start automatically.No risks found
Could it bypass safety checks?Looks for skipped website security checks, excessive file access, or actions that skip your approval.Risks found: 1
Medium risk

Organization-wide Drive sharing policy could be changed without per-action approval or impact confirmation

Source references: 5
What we found

The Skill directly instructs the agent to configure Drive sharing policies without requiring confirmation of the tenant, existing policy, affected users, exceptions, or explicit administrator approval. The dry-run tip applies only to “bulk operations” and does not clearly cover policy changes or require reconfirmation before live execution.

Why this matters

With Workspace administrative privileges, an overly restrictive policy could interrupt external collaboration or existing shared links; an overly permissive or incorrect policy could expand access to organizational files. The change could affect many users and persist.

This is an active agent instruction to configure Drive sharing policies, which could change users’ ability to access or externally share organizational files. The skill recommends dry-run for bulk operations, but does not state that this covers policy changes or require confirmation of the organization, scope, exceptions, and administrator approval before applying them. The action matches the stated purpose of configuring Workspace, so the evidence supports a potential change-control risk—not proof that an unauthorized or organization-wide change occurred. A user can restrict the skill to read-only review and ask the author to document approval, scoping, and rollback controls.

SKILL.md:26In the instructionsOpen original file
## Instructions- Start the day with `gws workflow +standup-report` to review any pending IT requests.- Monitor suspicious login activity and review audit logs.- Configure Drive sharing policies to enforce organizational security.
Show 4 other places
SKILL.md:31In the instructionsOpen original file
## Tips- Always use `--dry-run` before bulk operations.- Review `gws auth status` regularly to verify service account permissions.
SKILL.md:21In the instructionsOpen original file
Administer IT — monitor security and configure Workspace.
SKILL.md:29In the instructionsOpen original file
- Monitor suspicious login activity and review audit logs.- Configure Drive sharing policies to enforce organizational security.
SKILL.md:32In the instructionsOpen original file
## Tips- Always use `--dry-run` before bulk operations.- Review `gws auth status` regularly to verify service account permissions.
Could it mislead the AI or hide text?Checks the skill instructions for requests to ignore you, influence the report, or hide text in invisible characters.No risks found
Could it change links or payment recipients without asking?Looks for forced referral or payment changes combined with instructions to hide the change.No risks found

Inside this skill

3 instruction sections

The Skill presents itself as an IT administrator persona and requires Gmail, Drive, and Calendar utility skills. These are capability claims; the supplied material does not show their exact permission scopes or implementations.

View source
SKILL.md:8In the instructionsOpen original file
    category: "persona"    requires:      bins:        - gws      skills:        - gws-gmail        - gws-drive        - gws-calendar---
SKILL.md:17In the instructionsOpen original file
# IT Administrator> **PREREQUISITE:** Load the following utility skills to operate as this persona: `gws-gmail`, `gws-drive`, `gws-calendar`Administer IT — monitor security and configure Workspace.

The Skill directs the agent to run a predefined standup-report workflow each day to inspect pending IT requests. Its definition is not supplied, so the data it reads, sends, or changes cannot be determined from this evidence.

View source
SKILL.md:23In the instructionsOpen original file
## Relevant Workflows- `gws workflow +standup-report`## Instructions- Start the day with `gws workflow +standup-report` to review any pending IT requests.- Monitor suspicious login activity and review audit logs.

The monitoring instruction includes suspicious-login activity and audit logs, which may contain sensitive administrative information about employees and access events. The supplied instructions do not define filters or a least-access scope.

View source
SKILL.md:28In the instructionsOpen original file
- Start the day with `gws workflow +standup-report` to review any pending IT requests.- Monitor suspicious login activity and review audit logs.- Configure Drive sharing policies to enforce organizational security.

The Skill recommends a dry run before bulk operations and periodic inspection of service-account permissions. These are risk-reduction measures, but they do not constitute user approval for a subsequent live operation.

View source
SKILL.md:31In the instructionsOpen original file
## Tips- Always use `--dry-run` before bulk operations.- Review `gws auth status` regularly to verify service account permissions.
Start here · InstructionsSKILL.md
persona-it-admin
Lines connect the instruction file to its sections, not an observed execution order. Select a section to read the source.
Files and check records1 files

Coverage and gaps

Content covered in each file

These are the source ranges included in this check, not a guarantee that every issue has been resolved.

  • SKILL.mdFull text included

This report is for the version above. We read the available code and instructions without running the skill or checking extra packages it installs. This is not a promise of safety: a different version or setup may behave differently.

  • SKILL.mdInstructions

Operations mentioned in code and instructions

Connect to websites
SKILL.md:27In the instructionsOpen original file
## Instructions- Start the day with `gws workflow +standup-report` to review any pending IT requests.- Monitor suspicious login activity and review audit logs.
Lines read
35
File checksum (to compare versions)
cd0fc9285c09d145bd769ec187da5235a60b1ca693d94d6de006554e63f7a276