security-review

Pass

Audited by Gen Agent Trust Hub on Aug 2, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes local git and shell commands, such as git diff, git log, and gh pr diff, to identify code changes and branch history for auditing. These commands are used to gather necessary context and are not used to execute untrusted remote code.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted code changes from the user's repository, which serves as a potential ingestion point for indirect prompt injection. Evidence includes ingestion via git diff and file system reads. The skill lacks explicit boundary markers or sanitization for this external content, which is a standard attack surface for auditing tools that process user-controlled code.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 2, 2026, 08:12 PM
Security Audit — agent-trust-hub — security-review