resolving-merge-conflicts

Pass

Audited by Gen Agent Trust Hub on Aug 10, 2026

Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes untrusted external data which could contain malicious instructions. * Ingestion points: Git history, commit messages, PR descriptions, and issue/ticket metadata (SKILL.md). * Boundary markers: No explicit delimiters or safety instructions provided to the agent for separating data from commands. * Capability inventory: Executes shell commands for git operations and runs local project-defined scripts for testing and formatting (SKILL.md). * Sanitization: No explicit filtering or sanitization of external content mentioned.
  • [COMMAND_EXECUTION]: The skill requires the execution of git CLI commands and project-specific verification tools (tests, typecheck, format) to resolve conflicts and verify changes.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 10, 2026, 08:22 PM
Security Audit — agent-trust-hub — resolving-merge-conflicts