skills/jeremylongshore/claude-code-plugins-plus-skills/clickup-deploy-integration/Gen Agent Trust Hub
clickup-deploy-integration
Pass
Audited by Gen Agent Trust Hub on May 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill instructions follow standard deployment practices for the specified platforms.
- [CREDENTIALS_UNSAFE]: The skill uses placeholder values (e.g.,
pk_12345678_YOUR_TOKEN,1234567) for API tokens and team IDs in its examples. These are safe identifiers and do not expose actual secrets. - [COMMAND_EXECUTION]: The skill requests access to cloud CLI tools (
vercel,fly,gcloud) through theallowed-toolsfield. This access is appropriate and necessary for the skill's stated purpose of deploying applications to these services. - [DATA_EXFILTRATION]: Network operations are limited to the official ClickUp API domain (
api.clickup.com) for legitimate connectivity and health checks. No unauthorized data transmission patterns were found.
Audit Metadata