zeplin-automation

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Connects to the official Composio MCP server at https://rube.app/mcp to retrieve tool schemas and execute automation tasks.
  • [COMMAND_EXECUTION]: Orchestrates operations through the RUBE_MULTI_EXECUTE_TOOL and RUBE_REMOTE_WORKBENCH interfaces, which execute logic against the Zeplin API based on dynamically discovered tool definitions.
  • [SAFE]: This skill presents an indirect prompt injection surface as it processes external tool schemas from RUBE_SEARCH_TOOLS and data from Zeplin tool outputs without explicit boundary markers or sanitization logic; however, it leverages a well-known service (Composio) for orchestration.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 10:38 PM