pr-stack

Pass

Audited by Gen Agent Trust Hub on Jun 27, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses benign shell commands to detect the presence and configuration of stacking tools within the local environment. It subsequently executes commands from authorized tools (git, gh, gt, git-town) to manage repository branches and pull request synchronization as intended.
  • [EXTERNAL_DOWNLOADS]: The documentation references installation paths for supported tools from official and reputable sources such as Homebrew, npm, and official GitHub repositories.
  • [REMOTE_CODE_EXECUTION]: Reference material for the Git Town tool describes a standard installation method involving a shell script from the tool's official domain (git-town.com). This is a well-known service and the reference documentation includes an explicit security advisory for users to review scripts before execution.
  • [DATA_EXFILTRATION]: No evidence of unauthorized data access or exfiltration. Network operations are limited to the standard synchronization and submission workflows of the supported tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 27, 2026, 10:55 PM
Security Audit — agent-trust-hub — pr-stack