workflow-integration-git

Pass

Audited by Gen Agent Trust Hub on Jul 11, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses subprocess.run to execute git commands for repository management, including staging, committing, and managing isolated worktrees. It also invokes internal Python scripts within the vendor's project suite via a centralized executor.
  • [EXTERNAL_DOWNLOADS]: Performs network-based Git operations such as fetch, pull, and push to synchronize the local feature branch with the remote origin repository.
  • [SAFE]: The skill's architecture utilizes modular script sharing and dynamic module loading that are consistent with vendor-internal resource handling. It also includes explicit constraints prohibiting the commitment of sensitive data like credentials or environment files.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 11, 2026, 07:13 AM
Security Audit — agent-trust-hub — workflow-integration-git