using-git-worktrees
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: Executes shell commands to manage Git worktrees, check directory existence, and modify the .gitignore file to prevent workspace pollution.
- [COMMAND_EXECUTION]: Automatically runs build and test tools such as npm, cargo, pip, and go when corresponding project files are detected.
- [EXTERNAL_DOWNLOADS]: Triggers remote package installation via npm, pip, poetry, and go mod, which involves downloading software from external registries.
- [PROMPT_INJECTION]: Searches for configuration strings within CLAUDE.md and AGENTS.md, representing a surface for indirect prompt injection that is mitigated by specific string matching.
Audit Metadata