jira-automation
Pass
Audited by Gen Agent Trust Hub on Jun 20, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the user to add an external MCP server endpoint (https://rube.app/mcp) to their agent configuration. This server acts as the bridge for the Jira toolkit provided by Composio.
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from Jira, including issue descriptions, summaries, and comments, which presents a surface for indirect prompt injection.
- Ingestion points: JIRA_GET_ISSUE, JIRA_SEARCH_FOR_ISSUES_USING_JQL_POST, and JIRA_LIST_ISSUE_COMMENTS in SKILL.md.
- Boundary markers: Absent; the skill does not instruct the agent to use delimiters or specific safety instructions when processing content from Jira.
- Capability inventory: JIRA_CREATE_ISSUE, JIRA_EDIT_ISSUE, JIRA_ADD_COMMENT, JIRA_ASSIGN_ISSUE, and JIRA_ADD_USERS_TO_PROJECT_ROLE in SKILL.md.
- Sanitization: Absent; there are no instructions to sanitize or validate content retrieved from Jira before it is used in subsequent operations.
Audit Metadata