bitwarden-workflow-linter-rules
Pass
Audited by Gen Agent Trust Hub on May 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill acts as a documentation reference for workflow linting rules.
- [COMMAND_EXECUTION]: The skill instructs the agent to use
gh apito resolve commit SHAs for thestep_pinnedrule. This is a legitimate use of the GitHub CLI for security hardening (pinning dependencies). - [DATA_EXFILTRATION]: No data exfiltration detected. The skill only generates links to the official GitHub domain for user verification.
- [PROMPT_INJECTION]: No prompt injection or behavior override patterns were found. The instructional language is standard for a reference guide.
- [REMOTE_CODE_EXECUTION]: No remote code execution or untrusted dependency installations are present.
Audit Metadata