github-copilot-cli
Pass
Audited by Gen Agent Trust Hub on May 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides installation instructions for the official GitHub CLI tool from verified domains (cli.github.com). Use of sudo is limited to standard Linux package management operations.
- [SAFE]: Installation and configuration of the GitHub Copilot extension uses official 'gh extension' commands and points to the official 'github/gh-copilot' repository.
- [SAFE]: The skill demonstrates secure management of credentials by using environment variable placeholders (e.g., '${GITHUB_TOKEN}', '${DATABASE_URL}') in configuration examples for MCP servers.
- [SAFE]: All external references point to official documentation (github.com), well-known protocol specifications (modelcontextprotocol.io), or the author's verified personal domain (ara.so).
- [SAFE]: No obfuscation, prompt injection, unauthorized data access, or malicious command execution patterns were identified.
Audit Metadata