rebase-wip-with-issue
Pass
Audited by Gen Agent Trust Hub on Aug 25, 2026
Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from git commit messages and GitHub issues, which could potentially contain malicious instructions designed to influence the agent's behavior during the drafting process.
- Ingestion points: The skill reads prior git commits and external GitHub issue content (SKILL.md).
- Boundary markers: None identified.
- Capability inventory: The skill performs git rebase operations and invokes the
draft-commit-messageskill. - Sanitization: The instructions mitigate some risk by requiring the agent to draft a new message from scratch based on actual code differences rather than blindly reusing existing commit text.
- [COMMAND_EXECUTION]: The skill performs git rebase operations, which involve executing shell commands that modify the repository's history and file state. These are standard operations for the skill's stated purpose but involve local system modification.
Audit Metadata