sla-monitor
Pass
Audited by Gen Agent Trust Hub on Jul 1, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the Bash environment to execute
composioCLI commands for searching toolkits and interacting with ticket data viaGORGIAS_LIST_TICKETSandGORGIAS_GET_TICKET. - [INDIRECT_PROMPT_INJECTION]: The skill ingests external ticket data, which creates a theoretical attack surface common to data-processing tools.
- Ingestion points: Step 4 fetches ticket details and message timestamps from the Gorgias API.
- Boundary markers: No explicit delimiters are used to separate ticket content from agent instructions in the output dashboard.
- Capability inventory: The agent can execute CLI commands and interact with connected toolkits.
- Sanitization: There is no explicit sanitization of ticket subjects or customer messages before display.
Audit Metadata