team-release

Pass

Audited by Gen Agent Trust Hub on Aug 24, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the Bash tool for standard deployment and build tasks, such as tagging versions and generating artifacts. These actions are directly relevant to the skill's purpose and are executed within a structured pipeline.
  • [REMOTE_CODE_EXECUTION]: The skill employs the Task tool to delegate specialized work to subagents within the gamedev namespace (e.g., gamedev:qa-lead). This modular architecture ensures that tasks are handled by agents with specific, limited roles.
  • [PROMPT_INJECTION]: The skill implements robust human-in-the-loop controls by using AskUserQuestion at every phase transition and decision point, ensuring the user maintains control over the release process and any potential overrides.
  • [DATA_EXPOSURE]: Access to local files is restricted to project-specific configuration and milestone data (e.g., production/milestones/) to maintain context, which is standard for release management tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 24, 2026, 04:19 PM
Security Audit — agent-trust-hub — team-release