sla-monitor

Pass

Audited by Gen Agent Trust Hub on Jul 1, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the Bash environment to execute composio CLI commands for searching toolkits and interacting with ticket data via GORGIAS_LIST_TICKETS and GORGIAS_GET_TICKET.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests external ticket data, which creates a theoretical attack surface common to data-processing tools.
  • Ingestion points: Step 4 fetches ticket details and message timestamps from the Gorgias API.
  • Boundary markers: No explicit delimiters are used to separate ticket content from agent instructions in the output dashboard.
  • Capability inventory: The agent can execute CLI commands and interact with connected toolkits.
  • Sanitization: There is no explicit sanitization of ticket subjects or customer messages before display.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 1, 2026, 08:14 PM
Security Audit — agent-trust-hub — sla-monitor