ship-it

Pass

Audited by Gen Agent Trust Hub on Jun 14, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses several legitimate shell commands to interact with the environment:
  • Checks for the GitHub CLI installation and authentication status (gh --version, gh auth status).
  • Attempts to install the GitHub CLI if missing using standard package managers (winget, brew, apt).
  • Uses git commands to manage branches, check status, view logs, and push changes to the origin remote.
  • Dynamically detects the default branch and creates new feature branches using conventional naming patterns.
  • Creates pull requests using gh pr create with synthesized titles and bodies based on local commit history.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 14, 2026, 02:42 AM
Security Audit — agent-trust-hub — ship-it