pr-template-builder

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides boilerplate documentation and configuration files for GitHub projects. No executable code or malicious patterns were found in the templates or instructions.
  • [EXTERNAL_DOWNLOADS]: References standard and versioned GitHub Actions such as actions/labeler@v5 and codelytv/pr-size-labeler@v1. These are widely used, well-known automation tools for repository management.
  • [COMMAND_EXECUTION]: Includes standard developer instructions in the CONTRIBUTING.md template for tasks like npm install, git clone, and npm test. These are provided as guidance for contributors and are not executed by the agent.
  • [DATA_EXPOSURE]: Uses standard placeholders and documentation links (e.g., docs.example.com, discord.gg/example). It correctly identifies sensitive files like *.pem in a CODEOWNERS template for security team review, which is a defensive best practice.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 09:30 AM
Security Audit — agent-trust-hub — pr-template-builder