bamboohr-prod-checklist

Pass

Audited by Gen Agent Trust Hub on Sep 11, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes content from target repositories which could theoretically contain instructions intended to influence the agent's review verdict.
  • Ingestion points: The skill uses Read, Glob, and Grep tools to collect evidence from a target integration path or repository (SKILL.md).
  • Boundary markers: There are no specific delimiters defined to separate evidence collected from the repository from the agent's instructions.
  • Capability inventory: The skill permits the use of Write and Edit tools to generate readiness receipts and missing configurations (SKILL.md).
  • Sanitization: The instructions do not specify sanitization methods for the data read from external repositories.
  • [EXTERNAL_DOWNLOADS]: The skill references official software development kits (SDKs) and documentation from a well-known service provider.
  • Context: It uses references to official BambooHR GitHub repositories and documentation sites to establish the authority boundary for the production checklist (references/official-docs.md).
  • Verification: The skill explicitly warns that the Python SDK version documented in source might not match public registry distributions, recommending that users verify exact commit hashes for security (references/official-docs.md).
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 11, 2026, 11:43 PM
Security Audit — agent-trust-hub — bamboohr-prod-checklist