jira-automation

Pass

Audited by Gen Agent Trust Hub on Feb 27, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to configure the Rube MCP server at https://rube.app/mcp as a source for the Jira toolkit. This is a standard and expected setup for this integration.
  • [PROMPT_INJECTION]: The skill creates a surface for indirect prompt injection by processing external data from Jira issues and comments. Ingestion points: Data is retrieved from tools such as JIRA_GET_ISSUE, JIRA_SEARCH_FOR_ISSUES_USING_JQL_POST, and JIRA_LIST_ISSUE_COMMENTS as described in SKILL.md. Boundary markers: The instructions do not specify any delimiters or safety guidelines to distinguish external content from agent instructions. Capability inventory: The skill includes write-access tools such as JIRA_CREATE_ISSUE, JIRA_EDIT_ISSUE, and JIRA_ADD_COMMENT. Sanitization: No sanitization or validation logic is defined for the content fetched from Jira.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 27, 2026, 09:32 AM