skills/github/gh-aw/messages/Gen Agent Trust Hub

messages

Pass

Audited by Gen Agent Trust Hub on May 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is purely instructional, providing a step-by-step guide for developers to extend a message rendering system.
  • [SAFE]: Code examples use standard libraries and frameworks (e.g., vitest, @actions/github-script) and do not include any suspicious external dependencies or remote execution patterns.
  • [SAFE]: No evidence of prompt injection, data exfiltration, or obfuscation was detected in the instructions or the provided code snippets.
  • [SAFE]: The use of environment variables like GH_AW_SAFE_OUTPUT_MESSAGES is consistent with the described configuration system and does not pose a security risk in this context.
  • [SAFE]: File system modifications described are localized to the project's own directory structure (e.g., pkg/, scratchpad/) and follow standard software engineering practices.
Audit Metadata
Risk Level
SAFE
Analyzed
May 13, 2026, 02:31 PM
Security Audit — agent-trust-hub — messages