git-pr-workflows-onboard

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests user-provided context via the $ARGUMENTS placeholder to generate personalized onboarding plans.
  • Ingestion points: The Requirements section in SKILL.md parses role details, start dates, and technical requirements from $ARGUMENTS.
  • Boundary markers: None explicitly defined for the interpolation of $ARGUMENTS.
  • Capability inventory: No active capabilities such as subprocess execution, network operations, or file writing are present in the skill's instructions.
  • Sanitization: The skill relies on natural language parsing and does not include explicit data validation, though the risk is negligible given the lack of executable capabilities.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 03:04 PM
Security Audit — agent-trust-hub — git-pr-workflows-onboard