intercom-multi-env-setup

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides commands for interacting with cloud secret management tools (AWS Secrets Manager, GCP Secret Manager, HashiCorp Vault) to securely store Intercom tokens as part of its environment setup workflow.
  • [OBFUSCATION]: Contains a Base64 encoded string in an example file (references/examples.md) which decodes to a non-sensitive placeholder value ('tok:staging_token').
  • [INDIRECT_PROMPT_INJECTION]: The startup validation logic logs the name of the connected Intercom admin, which is an external data source, but it is handled safely for logging purposes and does not influence agent logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 03:47 AM
Security Audit — agent-trust-hub — intercom-multi-env-setup