mindtickle-upgrade-migration
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides a comprehensive framework for SaaS migration that prioritizes operational security and data integrity through structured gates and reconciliations.
- [DATA_EXPOSURE_AND_EXFILTRATION]: No hardcoded credentials or sensitive local file path access patterns were detected. The instructions explicitly recommend keeping current and target credentials separately owned and avoiding downgrades to broader access.
- [EXTERNAL_DOWNLOADS]: External references are limited to official Mindtickle legal and service documentation. The
WebFetchtool is appropriately scoped for retrieving authorized change material from the vendor. - [PROMPT_INJECTION]: There are no patterns suggesting an attempt to override system prompts or bypass safety guidelines. The instructions are focused on technical migration steps.
- [INDIRECT_PROMPT_INJECTION]: While the skill is designed to ingest and process external contract and artifact data, it includes robust risk mitigation steps. The process requires building semantic diffs, classifying changes, and performing rehearsals with sanitized data before any live migration occurs.
Audit Metadata