linear-project-updates
Pass
Audited by Gen Agent Trust Hub on Feb 28, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill presents a surface for indirect prompt injection.
- Ingestion points: External data is ingested into the agent context via
linear-cli pu listandlinear-cli pu getcommands inSKILL.md. - Boundary markers: There are no specific delimiters or instructions to ignore embedded commands within the retrieved project updates.
- Capability inventory: The skill utilizes the
Bashtool to executelinear-clifor creating, listing, and archiving updates. - Sanitization: No content validation or sanitization of the retrieved data is specified in the skill's instructions.
Audit Metadata