validation-and-enforcement

Pass

Audited by Gen Agent Trust Hub on Jul 8, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses git and gh (GitHub CLI) to validate branch states, commit history, and issue existence. These are standard operations for a development-focused skill.
  • [EXTERNAL_DOWNLOADS]: Recommends the installation of well-known development tools such as husky and commitlint from official package registries to facilitate hook management.
  • [DATA_EXPOSURE]: Includes a security-enhancing feature to scan for secrets in staged or committed files using git show before they are pushed to a remote repository.
  • [PROMPT_INJECTION]: Employs role-play instructions ("The Doorman") to define a strict enforcement persona, which is used to uphold project conventions rather than bypass safety filters.
  • [SAFE]: All operations are consistent with the skill's stated purpose of repository health and convention enforcement.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 8, 2026, 10:05 AM
Security Audit — agent-trust-hub — validation-and-enforcement