linear-project-updates

Pass

Audited by Gen Agent Trust Hub on Feb 28, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill presents a surface for indirect prompt injection.
  • Ingestion points: External data is ingested into the agent context via linear-cli pu list and linear-cli pu get commands in SKILL.md.
  • Boundary markers: There are no specific delimiters or instructions to ignore embedded commands within the retrieved project updates.
  • Capability inventory: The skill utilizes the Bash tool to execute linear-cli for creating, listing, and archiving updates.
  • Sanitization: No content validation or sanitization of the retrieved data is specified in the skill's instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 28, 2026, 11:21 AM