mindtickle-ci-integration
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The instructions promote industry-standard security practices for CI/CD, including secret scanning, dependency pinning, and the use of protected environments. The logic specifically prevents the exposure of sensitive credentials to unauthenticated environments like pull request forks.\n- [INDIRECT_PROMPT_INJECTION]: The skill identifies an ingestion surface where external contracts are fetched via
WebFetch. It mitigates associated risks by mandating fixture sanitization, log redaction, and boundary assertions to ensure that potentially untrusted external data does not compromise the agent's behavior or the repository's security.
Audit Metadata