agentic-qa-core
Pass
Audited by Gen Agent Trust Hub on May 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides a legitimate bootstrapping mechanism for a QA automation framework, creating necessary configuration files and directory structures.\n- [SAFE]: Sensitive information is managed via environment variables (e.g., ATLASSIAN_API_TOKEN), and the skill explicitly instructs the agent to avoid hardcoding credentials.\n- [SAFE]: External data ingested from the Jira API is sanitized using a strict slugification function, reducing the risk of indirect prompt injection or path traversal via malicious field names.\n- [SAFE]: No obfuscated code, multi-layer encoding, or hidden URLs were detected within the skill's instructions or scripts.
Audit Metadata