git
Pass
Audited by Gen Agent Trust Hub on Sep 23, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to treat external, potentially untrusted files and logs as authoritative sources for its operational behavior. * Ingestion points: The skill reads instructions from AGENTS.md, contributing guides, and git log (SKILL.md). * Boundary markers: None; the skill explicitly states that project-specific conventions override its own instructions. * Capability inventory: Includes the ability to execute git write operations such as git commit, git push, and git worktree prune. * Sanitization: No sanitization or validation of the instructions found in these external sources is mentioned.
Audit Metadata