agentic-workflow-development

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: Provides instructions for using the gh CLI and gh-aw extension for workflow development.
  • [EXTERNAL_DOWNLOADS]: References official installation of GitHub CLI extensions from the trusted github organization.
  • [DATA_EXFILTRATION]: Instructions emphasize using safe-outputs and minimal permissions when handling repository data.
  • [PROMPT_INJECTION]: Analyzed the surface for processing untrusted repository data; the skill mandates security audits and sanitization. Ingestion points: GitHub issues/PR triggers (e.g. .github/workflows/issue-triage.md). Boundary markers: Documented requirement for clear instructions and security reviews. Capability inventory: GitHub CLI and tool access (gh extension). Sanitization: Mandatory use of safe-outputs.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 12:25 AM