jira-automation

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the user to add an external MCP server endpoint (https://rube.app/mcp) to their agent configuration. This server acts as the bridge for the Jira toolkit provided by Composio.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from Jira, including issue descriptions, summaries, and comments, which presents a surface for indirect prompt injection.
  • Ingestion points: JIRA_GET_ISSUE, JIRA_SEARCH_FOR_ISSUES_USING_JQL_POST, and JIRA_LIST_ISSUE_COMMENTS in SKILL.md.
  • Boundary markers: Absent; the skill does not instruct the agent to use delimiters or specific safety instructions when processing content from Jira.
  • Capability inventory: JIRA_CREATE_ISSUE, JIRA_EDIT_ISSUE, JIRA_ADD_COMMENT, JIRA_ASSIGN_ISSUE, and JIRA_ADD_USERS_TO_PROJECT_ROLE in SKILL.md.
  • Sanitization: Absent; there are no instructions to sanitize or validate content retrieved from Jira before it is used in subsequent operations.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 12:45 PM
Security Audit — agent-trust-hub — jira-automation