finishing-a-development-branch
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes output from test runners and git commands during the verification and branch management steps. This represents an attack surface where external content could influence agent behavior, though it is standard for development workflows.\n
- Ingestion points: Test runner output (Step 1) and Git branch metadata (Step 2/4).\n
- Boundary markers: None present.\n
- Capability inventory: Shell execution for git, npm, and gh tools.\n
- Sanitization: None present.\n- [COMMAND_EXECUTION]: The skill executes standard development tools such as git, gh, and language-specific test runners (npm, cargo, pytest, go). These commands are integral to the stated purpose of managing branch lifecycles and performing integration tasks.
Audit Metadata