rebase-downstream

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_CONTEXT_INJECTION
Full Analysis
  • [DYNAMIC_CONTEXT_INJECTION]: The skill utilizes the !command syntax in SKILL.md to automatically fetch and display the current Git branch and status (git branch --show-current and git status --short) when the skill is loaded. These operations are benign and intended to provide environmental context to the user.
  • [COMMAND_EXECUTION]: The instructions command the agent to execute Git operations such as checkout, rebase, and add, and run a local bash script detect-chain.sh. These actions are strictly aligned with the stated purpose of managing branch rebases and do not involve unauthorized lateral movement or unexpected shell execution.
  • [SAFE]: The detect-chain.sh script is a well-structured Git utility that manages branch detection logic locally. It includes appropriate error handling (set -euo pipefail), uses secure temporary file management with automatic cleanup, and correctly quotes variables to prevent command injection from branch names. The script is authored by the same vendor as the skill (Brave) and does not perform any suspicious network or filesystem operations.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 03:57 PM
Security Audit — agent-trust-hub — rebase-downstream