commitlint

Pass

Audited by Gen Agent Trust Hub on May 10, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a static documentation repository for commitlint. It contains no executable scripts or instructions that attempt to override agent behavior.
  • [SAFE]: All external links point to official documentation (commitlint.js.org), standard technology platforms (GitHub, GitLab, BitBucket), or community projects with appropriate disclaimers.
  • [SAFE]: Configuration examples for CI/CD environments (e.g., Azure Pipelines using System.AccessToken) utilize standard environment variables and official APIs intended for the user's own automation workflows.
  • [SAFE]: Package references (npm/yarn/pnpm) are for standard, well-known libraries within the commitlint ecosystem such as @commitlint/cli, husky, and @commitlint/config-conventional.
Audit Metadata
Risk Level
SAFE
Analyzed
May 10, 2026, 04:05 PM
Security Audit — agent-trust-hub — commitlint