segment-automation
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references an external MCP server endpoint (https://rube.app/mcp) required to load the necessary Segment tools. This is a standard configuration pattern for the Model Context Protocol and the source is consistent with the skill's stated purpose of providing third-party tool access.
- [DATA_EXFILTRATION]: The skill's primary function is to send user and event data to Segment's external API. This data movement is intentional, well-documented, and core to the skill's utility as a customer data platform automation tool.
- [PROMPT_INJECTION]: The skill has an indirect prompt injection surface because it processes external data like user traits and event properties. However, because the skill only transmits this data to the Segment API and lacks dangerous capabilities like shell execution, file system access, or internal state manipulation, the associated risk is negligible.
Audit Metadata