code-review

Pass

Audited by Gen Agent Trust Hub on Apr 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a static set of guidelines for code review and does not contain any executable scripts or commands.
  • [SAFE]: It promotes security by instructing the agent to verify authentication, use parameterized queries, and validate all user inputs.
  • [SAFE]: No obfuscation, data exfiltration patterns, or persistence mechanisms were detected.
  • [SAFE]: Evaluation of indirect prompt injection surface (Category 8): 1. Ingestion points: User-supplied code or PR diffs (SKILL.md). 2. Boundary markers: None defined for separating untrusted code from instructions. 3. Capability inventory: No tools or shell access available to the skill. 4. Sanitization: No sanitization or escaping of the processed code is performed.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 2, 2026, 06:13 PM
Security Audit — agent-trust-hub — code-review