service-itsm-agentic-setup-cmdb-discovery-configure

Pass

Audited by Gen Agent Trust Hub on Aug 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes official Salesforce-hosted MCP tools (headless-360) to perform operations via authenticated REST API calls. No unauthorized or external tools are requested.
  • [SAFE]: All environment-modifying operations (feature enablement, permission assignment) are preceded by status checks and follow-up verification to ensure state consistency and prevent redundant operations.
  • [SAFE]: The skill adheres to the principle of least privilege by requesting only the specific tools needed for ITSM configuration and requires explicit user confirmation before executing write operations.
  • [SAFE]: Security best practices for data handling are observed, including instructions to escape user-supplied inputs in SOQL queries to prevent injection attacks and avoiding the handling of raw credentials by relying on session-based tokens.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 14, 2026, 12:16 PM
Security Audit — agent-trust-hub — service-itsm-agentic-setup-cmdb-discovery-configure