Email teams often lack a clear lifecycle map and send too frequently. This skill creates flow plans with timing, exits, and safeguards before copywriting begins.
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Agent request
Review the Skillstore skill "email-sequence-designer" from https://skillstore.io/skills/aaron-he-zhu-email-sequence-designer.md and its manifest at https://skillstore.io/api/skills/aaron-he-zhu-email-sequence-designer/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.
Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Most static findings are false positives caused by Markdown code fences and relative documentation links. Two risks remain: the Resend shell example lacks safe handling for supplied values, and the save filename is derived from a flow or goal without a stated sanitization rule.
1
Files scanned
100
Lines analyzed
2
Review items
0
False positives ignored
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
On user confirmation, save to `memory/email/email-sequence-designer/YYYY-MM-DD-<flow-or-goal>.md` β
The output filename includes the flow or goal placeholder without a stated filename allowlist or path normalization. A crafted value could escape the intended memory directory if an implementation interpolates it directly.
**Zero-dependency flow activation (when Resend is the ESP)**: once a flow step's creative is approve
The skill directs a shell invocation whose segment identifier and message fields are placeholders for user-controlled values. It provides no safe argument construction or validation guidance, creating a command-injection risk when copied into a shell.
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.