Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security audit
Security checks for vulnerabilities and agentic risk
This is a coherent Jira administration skill with expected Jira-changing examples, but users should review automation rules before applying them in production.
Install only if you want an agent to help with Jira administration. Before using its automation examples in a real Jira site, review destructive actions, auto-approval rules, outbound notifications, and webhooks with your Jira admins and data-governance requirements.
- Assign to product owner - Send email notification ### Auto-approve small bugs **Trigger:** Issue created **Conditions:** - Issue type = Bug
- Priority IN (Low, Lowest) **Actions:** - Transition to "Approved" - Add comment: "Auto-approved (low-priority bug)" ### Require security review **Trigger:** Issue transitioned
No suspicious patterns detected.