security-review

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses standard git commands, such as git status, git diff, and git log, to analyze repository changes. This is necessary and expected functionality for a code review tool.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from git diffs, which constitutes an indirect prompt injection surface. However, the skill incorporates a comprehensive three-stage filtering process—including category-specific sub-tasks, a false-positive filter, and mandatory exploit-scenario validation—specifically designed to mitigate noise and potential manipulation from the analyzed content.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 03:49 PM
Security Audit — agent-trust-hub — security-review