trigger-setup

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @trigger.dev/sdk and @trigger.dev/build packages and the use of the trigger CLI tool via npx. These are official resources for the Trigger.dev platform.
  • [COMMAND_EXECUTION]: The instructions involve project initialization and development server execution using npx trigger init and npx trigger dev, which are standard operations for the service.
  • [INDIRECT_PROMPT_INJECTION]: The skill describes an architecture where background tasks process data payloads. 1. Ingestion points: Task function payloads in files within the trigger/ directory. 2. Boundary markers: Not included in the basic project initialization templates. 3. Capability inventory: Project initialization, local development hosting, and network deployment via the trigger CLI. 4. Sanitization: Not addressed in the basic configuration examples. This represents the standard surface area for this type of service.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 03:56 PM
Security Audit — agent-trust-hub — trigger-setup