security-review
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill uses standard git commands, such as
git status,git diff, andgit log, to analyze repository changes. This is necessary and expected functionality for a code review tool. - [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from git diffs, which constitutes an indirect prompt injection surface. However, the skill incorporates a comprehensive three-stage filtering process—including category-specific sub-tasks, a false-positive filter, and mandatory exploit-scenario validation—specifically designed to mitigate noise and potential manipulation from the analyzed content.
Audit Metadata