release
Pass
Audited by Gen Agent Trust Hub on Sep 24, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes local repository scripts and system commands to facilitate the release process.
- Executes
node scripts/release-packages.mjsfor listing and validating packages. - Executes
pnpm installto update the project lockfile. - Executes
gitcommands for branching, committing, and merging code. - [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted or third-party data that could influence the agent's behavior during critical release steps.
- Ingestion points: Reads content from
apps/cli/RELEASING.md,CHANGELOG.md, and issue descriptions from a Linear integration. - Boundary markers: No explicit delimiters or instructions are provided to the agent to ignore potentially malicious content within these data sources.
- Capability inventory: The agent has the ability to execute local scripts, perform git operations, and trigger GitHub Action workflows (including live releases).
- Sanitization: No sanitization or validation logic is specified for the text ingested from changelogs or external issue trackers.
Audit Metadata