synthesis-bitbucket

Pass

Audited by Gen Agent Trust Hub on Aug 14, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill recommends installing the community-maintained Bitbucket CLI via Homebrew from a GitHub repository. The instructions include a security advisory suggesting that users review the tool's source code and pin the version to maintain a reviewed state.
  • [COMMAND_EXECUTION]: Provides a comprehensive map of commands for interacting with Bitbucket's API through the CLI. It differentiates between safe read operations and consequential write operations (like merging or declining PRs), emphasizing that writes must be performed with deliberate operator intent.
  • [DATA_EXPOSURE]: Includes guidance for authenticating via Atlassian API tokens. It follows best practices by using placeholders for sensitive data and recommending the use of the OS keychain to avoid leaking credentials in command-line history.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 14, 2026, 05:31 PM
Security Audit — agent-trust-hub — synthesis-bitbucket