gstack-workflow

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The suite utilizes standard development tools including git, gh (GitHub CLI), and language-specific test runners (npm, pytest, cargo) to automate workflow tasks. These operations are documented and aligned with the skill's purpose as a development assistant.
  • [PROMPT_INJECTION]: No malicious instructions were detected. The skill instructions specifically include defensive measures, requiring the agent to audit code for LLM trust boundary violations and sanitize outputs during the review and development process.
  • [SAFE]: The skill implements strong safety guardrails through modules like 'careful' and 'freeze'. These enforce user confirmation for destructive actions (e.g., branch deletion, forced pushes) and restrict the agent's file modification scope to prevent accidental changes outside the target workspace.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 07:22 AM
Security Audit — agent-trust-hub — gstack-workflow