lisa-jira-create
Pass
Audited by Gen Agent Trust Hub on Aug 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted input from $ARGUMENTS and local files to plan JIRA hierarchies and generate ticket descriptions.\n
- Ingestion points: Reads data from $ARGUMENTS and analyzes provided files via the Glob and Read tools.\n
- Boundary markers: The skill does not define specific boundary markers or instructions to ignore embedded commands within the ingested data during ticket drafting.\n
- Capability inventory: The skill uses the Skill tool to invoke lisa-jira-write-ticket, which performs JIRA write operations, and other auxiliary skills for artifact extraction and product walkthroughs.\n
- Sanitization: There is no explicit sanitization, validation, or escaping of the external content before it is interpolated into JIRA ticket bodies and metadata.
Audit Metadata