helpdesk-automation

Pass

Audited by Gen Agent Trust Hub on Jul 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill defines tools for interacting with a HelpDesk ticketing system via the Rube MCP gateway. The operations focus on information retrieval and follow standard integration patterns for the Composio ecosystem.\n- [EXTERNAL_DOWNLOADS]: The skill mentions the MCP server endpoint at rube.app/mcp. This is the official endpoint for the service described and is necessary for tool functionality and configuration.\n- [PROMPT_INJECTION]: The skill ingests ticket data which represents a theoretical surface for indirect prompt injection. Given that the skill only defines read-oriented tools and lacks any shell, file-write, or arbitrary code execution capabilities, the security risk is negligible.\n
  • Ingestion points: ticket data via HELPDESK_LIST_TICKETS in SKILL.md.\n
  • Boundary markers: No delimiters or ignore instructions are present in the prompt instructions.\n
  • Capability inventory: Operations are limited to listing and reading ticket metadata, views, and canned responses.\n
  • Sanitization: No data sanitization or validation steps are described in the skill instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 18, 2026, 04:24 PM
Security Audit — agent-trust-hub — helpdesk-automation