managing-git

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill is primarily documentation-based, providing workflows and best practices for Git. It does not include any executable scripts, remote downloads, or network operations.
  • [NO_CODE]: The skill content consists of Markdown templates and standard shell command examples intended for reference or manual execution by the agent, rather than automated logic that could be misused.
  • [DATA_EXFILTRATION]: The skill promotes security best practices by including a 'Commit Validation' checklist that specifically instructs the agent to verify that 'No secrets or credentials' are committed to the repository.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external data such as branch names, ticket IDs, and PR descriptions. However, it does not provide high-privilege automated actions that would make this ingestion surface exploitable. The use of structured checklists and templates reduces the risk of accidental execution of embedded instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 11:43 PM
Security Audit — agent-trust-hub — managing-git