open-pr
Pass
Audited by Gen Agent Trust Hub on Jul 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill performs legitimate development workflow automation. It reads local git information and formats it into pull request templates, which matches its stated purpose.
- [COMMAND_EXECUTION]: The skill instructs the agent to use standard system utilities such as
git,printf, andshasum. These are used for routine repository operations and calculating file hashes for documentation links, posing no inherent security risk in this context. - [SAFE]: No evidence of prompt injection, data exfiltration, obfuscation, or unauthorized remote code execution was found. The skill operates within the expected boundaries of a version control helper.
Audit Metadata