propagate-design-change

Pass

Audited by Gen Agent Trust Hub on Sep 30, 2026

Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_CONTEXT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses git diff and grep commands via Bash to analyze repository history and file contents. These are standard operations for a development-focused agent skill and are used safely to compare file versions.
  • [DYNAMIC_CONTEXT_INJECTION]: The skill uses the !command syntax (specifically `!`bash "${CLAUDE_SKILL_DIR}/../../hooks/yaml-helper.sh" resolve_config ...) to load configuration at skill load time. The target script appears to be a local project helper for managing YAML configurations. This is a platform feature used here for legitimate workflow parameterization.
  • [SAFE_PRACTICE]: The skill implements thorough user confirmation protocols (AskUserQuestion) before modifying any files or writing reports, adhering to a collaborative and non-destructive workflow.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 30, 2026, 06:51 PM
Security Audit — agent-trust-hub — propagate-design-change