skills/alinaqi/maggy/council-review/Gen Agent Trust Hub

council-review

Pass

Audited by Gen Agent Trust Hub on Jul 14, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes local binaries ~/bin/validate-plan and ~/bin/review to perform automated validation and code reviews.
  • [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface because it ingests and processes external data from plans and source code during validation tasks.
  • Ingestion points: Plan files located in ~/.claude/plans/ and project files provided during PR reviews.
  • Boundary markers: Absent; the instructions do not specify the use of delimiters or ignore-instructions for the processed data.
  • Capability inventory: The agent uses the Bash tool to invoke validation and review scripts on the ingested files.
  • Sanitization: No sanitization or escaping of external content is mentioned in the logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 14, 2026, 04:17 PM
Security Audit — agent-trust-hub — council-review