git-worktree

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructions involve executing git worktree operations to create, manage, and remove isolated development environments. It also includes steps for updating submodules and installing project dependencies using npm or pip within those isolated paths.
  • [INDIRECT_PROMPT_INJECTION]: The documentation defines a protocol for multi-agent interaction, establishing a hierarchy between Orchestrator and delegated agents. It includes ingestion points via the agent context, boundary markers through explicit ownership rules and usage guidelines, a capability inventory involving file system and shell command access, and sanitization through a mandatory cleanup checklist.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 10:30 AM
Security Audit — agent-trust-hub — git-worktree