bamboohr-prod-checklist
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes content from target repositories which could theoretically contain instructions intended to influence the agent's review verdict.
- Ingestion points: The skill uses
Read,Glob, andGreptools to collect evidence from a target integration path or repository (SKILL.md). - Boundary markers: There are no specific delimiters defined to separate evidence collected from the repository from the agent's instructions.
- Capability inventory: The skill permits the use of
WriteandEdittools to generate readiness receipts and missing configurations (SKILL.md). - Sanitization: The instructions do not specify sanitization methods for the data read from external repositories.
- [EXTERNAL_DOWNLOADS]: The skill references official software development kits (SDKs) and documentation from a well-known service provider.
- Context: It uses references to official BambooHR GitHub repositories and documentation sites to establish the authority boundary for the production checklist (references/official-docs.md).
- Verification: The skill explicitly warns that the Python SDK version documented in source might not match public registry distributions, recommending that users verify exact commit hashes for security (references/official-docs.md).
Audit Metadata