protected-commit

Pass

Audited by Gen Agent Trust Hub on Sep 5, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill documents how to interact with a repository-specific security mechanism (protected-state-check) and defines a compliant workflow for resolving commit blocks without bypassing security controls.
  • [SAFE]: It explicitly warns against common bypass techniques, such as using unauthorized environment variables or git verification flags ('--no-verify'), and directs the agent to report bugs through proper infrastructure channels.
  • [SAFE]: The included diagnostic Node.js command uses local project libraries to verify file status and does not involve external network connections, data exfiltration, or execution of untrusted remote content.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 5, 2026, 10:07 AM
Security Audit — agent-trust-hub — protected-commit