workhuman-local-dev-loop

Pass

Audited by Gen Agent Trust Hub on Sep 11, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [SAFE]: The skill instructions prioritize data privacy and security by requiring the removal of sensitive information, including names, tokens, and employment details, from development fixtures.
  • [INDIRECT_PROMPT_INJECTION]: The skill involves processing external data from customer contracts and fixtures. It mitigates potential injection risks by instructing the agent to validate provenance, sanitize records, and maintain strict boundary snapshots for all ingested schemas.
  • [EXTERNAL_DOWNLOADS]: The skill facilitates fetching authoritative integration schemas from official Workhuman domains. These references are to well-known, legitimate services necessary for the skill's documented purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 11, 2026, 10:04 AM
Security Audit — agent-trust-hub — workhuman-local-dev-loop