mk:jira-bulk — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited mk:jira-bulk (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Forks to the jira-bulk agent. The agent enforces a hard dry-run-first rule at runtime.
Step 1: invocation + --dry-run
Step 2: agent shows would_* JSON keys + impacted-count
Step 3: explicit user "yes" → re-invoke without --dry-runSkipping Step 1 is a hard violation. The agent will refuse if asked to skip the dry-run.
../../agents/jira-bulk.md../jira/references/{install-and-auth,cli-idioms,safety-framework}.md (Tier 4 enforcement lives in safety-framework.md)references/safety-checklist.md — pre-flight checklist for any bulk operation >50 issuesreferences/checkpoint-guide.md — checkpoint + resume strategy for 500+ issue opstasks/jira-workflows/<workflow-slug>.md — discovered statuses + transitions (run bash $CLAUDE_PROJECT_DIR/.claude/skills/jira/scripts/fetch-workflow.sh <KEY> if absent; see jira-lifecycle/references/workflow-discovery.md)bulk transition --to "<Status>", validate the target status name exists in the cache; for --id <N>, validate the transition ID exists. Mismatch → reject before exec.mk:jira-search (JQL author + bulk-update overlap — same dry-run discipline), mk:jira-lifecycle (single-issue transitions; same cache), mk:jira-relationships (bulk-link is here)~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.