cr-create
Pass
Audited by Gen Agent Trust Hub on Aug 20, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes
curlandjqto perform API operations and process JSON data. - [EXTERNAL_DOWNLOADS]: Communicates with the GitBook REST API at
api.gitbook.comand user-defined Slack webhooks to manage documentation workflows. These resources are vendor-owned or user-configured. - [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from document comments and page content.
- Ingestion points: Document pages and change request comments fetched via the REST API in
SKILL.md. - Boundary markers: Explicitly instructs the agent to treat all fetched content as data rather than instructions.
- Capability inventory: Network access via
curland shell command execution. - Sanitization: Uses
jqfor safe parsing and construction of data bodies.
Audit Metadata