flexport-incident-runbook
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill provides legitimate instructions for incident response and reconciliation within a Flexport environment.
- [DATA_EXPOSURE_AND_EXFILTRATION]: The runbook explicitly instructs users to never log credentials or tokens and recommends minimizing sensitive field access during incident analysis by using redacted operation receipts.
- [EXTERNAL_DOWNLOADS]: The skill references official developer documentation and API references from Flexport. These links target well-known service domains directly related to the skill's functionality.
- [INDIRECT_PROMPT_INJECTION]: The skill processes event data from the Flexport API as described in SKILL.md. The risk is mitigated by the restricted tool set (Read, Grep, Write, Edit) and the instruction to use redacted operation receipts for validation.
Audit Metadata