bamboohr

Pass

Audited by Gen Agent Trust Hub on Apr 27, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the official OpenAPI specification for the HRIS unified API from Apideck's controlled domain (specs.apideck.com).
  • [COMMAND_EXECUTION]: Provides informational examples for using curl to interact with Apideck's Proxy API (unify.apideck.com). These are standard API interaction patterns and do not involve arbitrary command execution.
  • [DATA_EXFILTRATION]: The skill's primary purpose is the programmatic transfer of HRIS data (employees, payroll, time-off) between BambooHR and the agent's environment via Apideck's infrastructure. No unauthorized exfiltration patterns were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 27, 2026, 05:57 PM