mcore-split-pr

Pass

Audited by Gen Agent Trust Hub on Jul 3, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill uses the GitHub CLI (gh) to view pull requests and parse CODEOWNERS files, which are standard developer activities within a repository context.\n- [SAFE]: The code manipulation workflow uses git diff and git apply with specific file path filters, ensuring that only intended changes are moved to new branches.\n- [SAFE]: All write-access operations, including creating branches, pushing to forks, and creating draft pull requests, are gated behind a mandatory user approval step.\n- [SAFE]: The skill promotes secure practices by pushing to user forks and creating draft PRs, which minimizes the risk of accidental or malicious impact on the main project codebase.\n- [SAFE]: The presence of a digital signature (skill.oms.sig) confirms the skill's origin and integrity as provided by the author (NVIDIA).
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 3, 2026, 11:04 AM
Security Audit — agent-trust-hub — mcore-split-pr