gitnexus-refactoring
Pass
Audited by Gen Agent Trust Hub on Jul 31, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTIONNO_CODE
Full Analysis
- [COMMAND_EXECUTION]: The skill includes an instruction to run
node .gitnexus/run.cjs analyzeto update the code index. This script is part of the vendor's (.gitnexus) project configuration and is used for maintenance. - [PROMPT_INJECTION]: The skill processes project source code through its analysis tools, creating a surface for indirect prompt injection.
- Ingestion points: Code content is ingested by the
query,context, andrenametools. - Boundary markers: None specified.
- Capability inventory: The skill can modify files via the
renametool and suggests local command execution. - Sanitization: No content sanitization is described.
- [SAFE]: No malicious behaviors such as credential theft, data exfiltration to external servers, or persistence mechanisms were detected.
Audit Metadata