code-review
Pass
Audited by Gen Agent Trust Hub on Apr 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a static set of guidelines for code review and does not contain any executable scripts or commands.
- [SAFE]: It promotes security by instructing the agent to verify authentication, use parameterized queries, and validate all user inputs.
- [SAFE]: No obfuscation, data exfiltration patterns, or persistence mechanisms were detected.
- [SAFE]: Evaluation of indirect prompt injection surface (Category 8): 1. Ingestion points: User-supplied code or PR diffs (SKILL.md). 2. Boundary markers: None defined for separating untrusted code from instructions. 3. Capability inventory: No tools or shell access available to the skill. 4. Sanitization: No sanitization or escaping of the processed code is performed.
Audit Metadata