repo-scan

Warn

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The installation process involves downloading code from an external, non-whitelisted GitHub repository (github.com/haibindev/repo-scan.git). This constitutes an unverified dependency from an unknown third-party source.
  • [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection because it processes untrusted data from file systems during scans. Ingestion points: Enumerate files, headers, and license files (SKILL.md). Boundary markers: None mentioned. Capability inventory: File system and repository operations including mkdir, git, and cp (SKILL.md). Sanitization: No evidence of input validation or content sanitization is provided.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 17, 2026, 01:28 AM
Security Audit — agent-trust-hub — repo-scan