repo-scan
Warn
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The installation process involves downloading code from an external, non-whitelisted GitHub repository (github.com/haibindev/repo-scan.git). This constitutes an unverified dependency from an unknown third-party source.
- [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection because it processes untrusted data from file systems during scans. Ingestion points: Enumerate files, headers, and license files (SKILL.md). Boundary markers: None mentioned. Capability inventory: File system and repository operations including mkdir, git, and cp (SKILL.md). Sanitization: No evidence of input validation or content sanitization is provided.
Audit Metadata