jira
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE] (SAFE): The skill package only includes empty init.py files and a markdown reference guide. The script 'jira.py' referenced in the documentation is not provided in the skill contents.
- [PROMPT_INJECTION] (SAFE): The documentation describes features that would process user-generated Jira data (comments, descriptions), which is a common surface for indirect prompt injection. However, no code exists in the skill to perform this processing, and the documentation contains no malicious instructions.
- Ingestion points: Jira issue fields and comments mentioned in references/scriptrunner.md.
- Boundary markers: None specified in the documentation.
- Capability inventory: None (no executable code provided).
- Sanitization: None specified.
Audit Metadata