git-rebase-auto
Pass
Audited by Gen Agent Trust Hub on Mar 31, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes Git commands and enables the execution of arbitrary shell commands through the Git rebase
execaction. The script itself does not technically restrict the shell commands, but the accompanying documentation (SKILL.md) provides strict instructions for the agent to only use verified commands (e.g., tests, builds) and forbids network or destructive operations. - [PROMPT_INJECTION]: The skill instructions use strong directive language such as "Règle absolue" (Absolute rule) and "Ne JAMAIS" (Never). These are defensive instructions designed to establish safety boundaries for the agent, such as protecting production branches and requiring confirmation for destructive edits, rather than malicious attempts to override core safety filters.
- [DYNAMIC_EXECUTION]: The script dynamically generates a temporary shell script at runtime in the system's temporary directory. This helper script is used to automate the Git sequence editor by overwriting the rebase todo-list with a pre-built plan. The logic within the generated script is minimal and restricted to a file copy operation.
Audit Metadata