vibe-change

Pass

Audited by Gen Agent Trust Hub on Sep 11, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the Bash tool to execute shell commands as part of its development workflow. This is a standard capability for software engineering skills.
  • [INDIRECT_PROMPT_INJECTION]: The skill instructions direct the agent to read and process external content such as source code and repository instructions. This represents an attack surface where maliciously crafted files could attempt to influence the agent's behavior, though standard safety guardrails typically apply.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 11, 2026, 11:05 PM
Security Audit — agent-trust-hub — vibe-change