using-git-worktrees

Pass

Audited by Gen Agent Trust Hub on Jun 16, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: Executes shell commands to manage Git worktrees, check directory existence, and modify the .gitignore file to prevent workspace pollution.
  • [COMMAND_EXECUTION]: Automatically runs build and test tools such as npm, cargo, pip, and go when corresponding project files are detected.
  • [EXTERNAL_DOWNLOADS]: Triggers remote package installation via npm, pip, poetry, and go mod, which involves downloading software from external registries.
  • [PROMPT_INJECTION]: Searches for configuration strings within CLAUDE.md and AGENTS.md, representing a surface for indirect prompt injection that is mitigated by specific string matching.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 16, 2026, 11:16 AM
Security Audit — agent-trust-hub — using-git-worktrees