bitwarden-workflow-linter-rules

Pass

Audited by Gen Agent Trust Hub on May 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues detected. The skill acts as a documentation reference for workflow linting rules.
  • [COMMAND_EXECUTION]: The skill instructs the agent to use gh api to resolve commit SHAs for the step_pinned rule. This is a legitimate use of the GitHub CLI for security hardening (pinning dependencies).
  • [DATA_EXFILTRATION]: No data exfiltration detected. The skill only generates links to the official GitHub domain for user verification.
  • [PROMPT_INJECTION]: No prompt injection or behavior override patterns were found. The instructional language is standard for a reference guide.
  • [REMOTE_CODE_EXECUTION]: No remote code execution or untrusted dependency installations are present.
Audit Metadata
Risk Level
SAFE
Analyzed
May 20, 2026, 10:30 AM
Security Audit — agent-trust-hub — bitwarden-workflow-linter-rules