skills/onmax/skills/to-tickets/Gen Agent Trust Hub

to-tickets

Pass

Audited by Gen Agent Trust Hub on Jul 25, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from external sources and the local codebase, which could contain malicious instructions designed to influence the ticket generation process.
  • Ingestion points: Data is ingested from user-provided spec paths, issue URLs (including bodies and comments), and the local codebase during the context gathering and codebase exploration steps in SKILL.md.
  • Capability inventory: The skill can perform file writes to the repository root (creating tickets.md) and create new issues on external platforms like GitHub or Linear.
  • Boundary markers: No specific delimiters or "ignore embedded instructions" warnings are used when the agent reads external content or codebase files.
  • Sanitization: The skill does not include explicit validation or sanitization steps for the data fetched from external URLs or the local file system before incorporating it into the ticket drafting process.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 25, 2026, 12:52 AM
Security Audit — agent-trust-hub — to-tickets