043-planning-github-issues

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a secure design by explicitly prohibiting the ingestion of sensitive GitHub data such as issue bodies, comments, and milestones. It restricts the agent's context to repository-owned planning artifacts and issue numbers for traceability only.
  • [SAFE]: It includes mandatory interactive gates that require user confirmation before providing installation guidance for the GitHub CLI, ensuring the user maintains control over their environment.
  • [SAFE]: The skill provides installation instructions targeting official and well-known sources (cli.github.com, Homebrew, Winget) and emphasizes that authentication (gh auth login) should be performed locally by the user.
  • [SAFE]: Explicit constraints are in place to prevent the agent from requesting, accepting, or displaying GitHub tokens, secrets, or credential material.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 11:00 AM
Security Audit — agent-trust-hub — 043-planning-github-issues