gh
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides documentation for the GitHub CLI (gh), a standard and well-known tool for interacting with GitHub services. All described commands and flags are legitimate functionalities of the CLI tool.- [PROMPT_INJECTION]: The skill describes functionalities for reading external data from GitHub repositories, which is a surface for indirect prompt injection. Ingestion points include
gh repo read-file,gh pr view, andgh issue view. The skill provides no specific boundary markers or sanitization guidelines for handling this untrusted external data, but it is presented purely as a functional reference for the tool's standard capabilities.
Audit Metadata