checkpoint
Pass
Audited by Gen Agent Trust Hub on Mar 17, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill interacts with the
gitCLI and a localmemory-agentutility using thesubprocess.runfunction. Commands are constructed as lists of arguments rather than shell strings, effectively preventing shell injection vulnerabilities. - [SAFE]: No indicators of malicious behavior, such as credential theft, data exfiltration, or obfuscation, were found. The skill's operations are confined to the local filesystem and the specified memory project directory, consistent with its stated purpose of managing session checkpoints.
Audit Metadata