linear-notifications
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- Indirect Prompt Injection (LOW): The skill reads external notification data from the Linear API which could contain malicious instructions.
- Ingestion points: linear-cli n list output in SKILL.md.
- Boundary markers: Absent.
- Capability inventory: Bash tool usage to manage notifications.
- Sanitization: No sanitization of external content is specified.
Audit Metadata