clickup-deploy-integration

Pass

Audited by Gen Agent Trust Hub on May 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues detected. The skill instructions follow standard deployment practices for the specified platforms.
  • [CREDENTIALS_UNSAFE]: The skill uses placeholder values (e.g., pk_12345678_YOUR_TOKEN, 1234567) for API tokens and team IDs in its examples. These are safe identifiers and do not expose actual secrets.
  • [COMMAND_EXECUTION]: The skill requests access to cloud CLI tools (vercel, fly, gcloud) through the allowed-tools field. This access is appropriate and necessary for the skill's stated purpose of deploying applications to these services.
  • [DATA_EXFILTRATION]: Network operations are limited to the official ClickUp API domain (api.clickup.com) for legitimate connectivity and health checks. No unauthorized data transmission patterns were found.
Audit Metadata
Risk Level
SAFE
Analyzed
May 20, 2026, 01:01 AM
Security Audit — agent-trust-hub — clickup-deploy-integration