pm-monitor
Pass
Audited by Gen Agent Trust Hub on Apr 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious behavior, obfuscation, or unauthorized access patterns were detected. The skill is designed for structured project data processing and reporting and does not include scripts or executables. \n- [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface as it processes untrusted data from external sources. \n- Ingestion points: The skill reads data from Jira, Linear, ClickUp, Slack, Email, Notion, and Confluence (SKILL.md, Step 2). \n- Boundary markers: Absent; there are no instructions to delimit or ignore instructions embedded within the ingested data. \n- Capability inventory: The skill is restricted to generating markdown reports and structured actions tables; it lacks dangerous tools or command execution capabilities. \n- Sanitization: Absent; external data is interpolated into outputs without sanitization. The risk is mitigated by the skill's limited capabilities.
Audit Metadata