lcx-report-bug
Pass
Audited by Gen Agent Trust Hub on Aug 9, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill synchronizes source code from 'code-yeongyu/lazycodex' (vendor resource) and 'openai/codex' (well-known organization) to facilitate root-cause analysis. These operations use official Git protocols and target trusted sources related to the skill's primary purpose.
- [COMMAND_EXECUTION]: Employs the GitHub CLI ('gh') and standard Git commands to manage issues, labels, and pull requests. These commands are structured within the skill's workflow to automate reporting tasks and do not involve arbitrary or hidden execution of untrusted code.
- [DATA_EXFILTRATION]: While the skill interacts with external GitHub repositories, the data transmitted is limited to bug reports and pull requests generated from the current project context as requested by the user. No unauthorized exfiltration of sensitive credentials or private files was observed.
Audit Metadata