gh-pages-deploy
Pass
Audited by Gen Agent Trust Hub on Sep 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill utilizes official tools (GitHub CLI and Git) to perform standard development tasks related to hosting static content on GitHub Pages.
- [COMMAND_EXECUTION]: The shell commands provided (git init, gh repo create, gh api) are legitimate and directly related to the skill's stated purpose of deployment. They do not involve arbitrary code execution or unsafe user input interpolation.
- [DATA_EXPOSURE]: Network operations are restricted to the official GitHub API for repository configuration and status checks. No sensitive credentials, private keys, or environment files are accessed or transmitted to third parties.
- [INDIRECT_PROMPT_INJECTION]: While the skill interacts with files in the local directory (git add .), it is a standard deployment utility designed for developer use in their own projects. The attack surface is minimal and inherent to the tool's primary purpose.
Audit Metadata