ticket-triage
Pass
Audited by Gen Agent Trust Hub on Mar 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of markdown-based logic and instructions. There are no shell scripts, Python files, or Node.js code included in the provided content.
- [DATA_EXFILTRATION]: No network operations or data transmission commands (e.g., curl, wget, fetch) are present. While the documentation mentions integration points like Intercom and Stripe, these are descriptive of where an agent might find context rather than active exfiltration scripts.
- [CREDENTIALS_UNSAFE]: No hardcoded API keys, passwords, or tokens were detected. The skill refers to configuration potentially stored in a project-level 'CLAUDE.md', which is a standard practice for environment-specific settings.
- [PROMPT_INJECTION]: The instructions are task-focused and do not contain adversarial patterns such as 'ignore previous instructions', 'system prompt extraction', or 'developer mode' bypasses.
- [REMOTE_CODE_EXECUTION]: There are no indicators of external package installation or remote script execution. The logic remains confined to natural language processing and analysis.
Audit Metadata