lisa-jira-create

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted input from $ARGUMENTS and local files to plan JIRA hierarchies and generate ticket descriptions.\n
  • Ingestion points: Reads data from $ARGUMENTS and analyzes provided files via the Glob and Read tools.\n
  • Boundary markers: The skill does not define specific boundary markers or instructions to ignore embedded commands within the ingested data during ticket drafting.\n
  • Capability inventory: The skill uses the Skill tool to invoke lisa-jira-write-ticket, which performs JIRA write operations, and other auxiliary skills for artifact extraction and product walkthroughs.\n
  • Sanitization: There is no explicit sanitization, validation, or escaping of the external content before it is interpolated into JIRA ticket bodies and metadata.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 06:31 AM
Security Audit — agent-trust-hub — lisa-jira-create