mindtickle-cost-tuning

Pass

Audited by Gen Agent Trust Hub on Sep 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary function is cost governance for Mindtickle software subscriptions. It utilizes standard tools such as Read, Glob, and Grep to analyze contract summaries and aggregate reports.
  • [DATA_EXPOSURE_SAFE]: The instructions explicitly emphasize data privacy and security. It directs the agent to create a 'sanitized cost model,' restrict learner-level adoption data to authorized reviewers, and suppress individual-identifying metrics in compliance with policy.
  • [EXTERNAL_DOWNLOADS_SAFE]: The skill uses WebFetch to access official Mindtickle legal documentation (mindtickle.com/legal/) for service descriptions. These are well-known, trusted resources related to the skill's specific purpose.
  • [INDIRECT_PROMPT_INJECTION]: While the skill ingests external data (contract files and legal URLs) and writes outputs, the risk is minimized by instructions to aggregate and sanitize data. The capability is limited to file management and web fetching, with no access to sensitive system credentials or dangerous command execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 11, 2026, 06:59 AM
Security Audit — agent-trust-hub — mindtickle-cost-tuning