morning-email-rollup

clawhub:morning-email-rollup

View source
A
92/100

First Seen

Feb 18, 2026

Last Scanned

Feb 22, 2026

Findings

10

Score

92/100

MEDIUM 1
LOW 9

Findings (10)

MEDIUM
Unrestricted email or messaging access
L213

Detects CLI tools granting unrestricted send/read access to email or messaging

gmail search 'is:important newer_than
FIX

Restrict email and messaging API access to user-initiated actions. Prevent automated sending that could exfiltrate data via email body or attachments.

FP?

Likely FP if the skill is an email client or messaging tool whose documented purpose is to send messages on behalf of the user.

LOW
Shell script file execution
L39

Detects execution of shell script files via bash/sh command or direct invocation

bash skills/morning-email-rollup/rollup.sh
FIX

Replace direct shell script execution with a language-native implementation or a sandboxed executor. If shell scripts must run, restrict them to a vetted allowlist with integrity checks.

FP?

Likely FP if the match references running a script that is part of the skill's own repository (e.g., ./setup.sh) with clear, auditable contents.

LOW
Shell script file execution
L42

Detects execution of shell script files via bash/sh command or direct invocation

bash skills/morning-email-rollup/rollup.sh
FIX

Replace direct shell script execution with a language-native implementation or a sandboxed executor. If shell scripts must run, restrict them to a vetted allowlist with integrity checks.

FP?

Likely FP if the match references running a script that is part of the skill's own repository (e.g., ./setup.sh) with clear, auditable contents.

LOW
Shell script file execution
L43

Detects execution of shell script files via bash/sh command or direct invocation

bash skills/morning-email-rollup/rollup.sh
FIX

Replace direct shell script execution with a language-native implementation or a sandboxed executor. If shell scripts must run, restrict them to a vetted allowlist with integrity checks.

FP?

Likely FP if the match references running a script that is part of the skill's own repository (e.g., ./setup.sh) with clear, auditable contents.

LOW
Shell script file execution
L118

Detects execution of shell script files via bash/sh command or direct invocation

bash /path/to/skills/morning-email-rollup/rollup.sh
FIX

Replace direct shell script execution with a language-native implementation or a sandboxed executor. If shell scripts must run, restrict them to a vetted allowlist with integrity checks.

FP?

Likely FP if the match references running a script that is part of the skill's own repository (e.g., ./setup.sh) with clear, auditable contents.

LOW
Shell script file execution
L131

Detects execution of shell script files via bash/sh command or direct invocation

bash skills/morning-email-rollup/rollup.sh
FIX

Replace direct shell script execution with a language-native implementation or a sandboxed executor. If shell scripts must run, restrict them to a vetted allowlist with integrity checks.

FP?

Likely FP if the match references running a script that is part of the skill's own repository (e.g., ./setup.sh) with clear, auditable contents.

LOW
Unrestricted email or messaging access
L146

Detects CLI tools granting unrestricted send/read access to email or messaging

gmail search 'is:important OR is:starred newer_than
FIX

Restrict email and messaging API access to user-initiated actions. Prevent automated sending that could exfiltrate data via email body or attachments.

FP?

Likely FP if the skill is an email client or messaging tool whose documented purpose is to send messages on behalf of the user.

LOW
Unrestricted email or messaging access
L150

Detects CLI tools granting unrestricted send/read access to email or messaging

gmail search 'is:important is:unread newer_than
FIX

Restrict email and messaging API access to user-initiated actions. Prevent automated sending that could exfiltrate data via email body or attachments.

FP?

Likely FP if the skill is an email client or messaging tool whose documented purpose is to send messages on behalf of the user.

LOW
Unrestricted email or messaging access
L156

Detects CLI tools granting unrestricted send/read access to email or messaging

gmail search 'label:work is:important newer_than
FIX

Restrict email and messaging API access to user-initiated actions. Prevent automated sending that could exfiltrate data via email body or attachments.

FP?

Likely FP if the skill is an email client or messaging tool whose documented purpose is to send messages on behalf of the user.

LOW
Shell script file execution
L207

Detects execution of shell script files via bash/sh command or direct invocation

bash skills/morning-email-rollup/rollup.sh
FIX

Replace direct shell script execution with a language-native implementation or a sandboxed executor. If shell scripts must run, restrict them to a vetted allowlist with integrity checks.

FP?

Likely FP if the match references running a script that is part of the skill's own repository (e.g., ./setup.sh) with clear, auditable contents.