codegraph-qa

Pass

Audited by Gen Agent Trust Hub on Mar 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill requires the installation of the codegraph-ai package from PyPI, which contains the core logic for codebase indexing and analysis. This is a standard dependency for the tool's functionality.- [SAFE]: The skill utilizes the official GitHub CLI (gh) to fetch and parse issue data for bug root cause analysis, which is a documented and intended feature of the tool.- [SAFE]: The skill executes Cypher queries against a local database to perform structural and evolutionary analysis of the codebase, which is a standard method for relationship mapping in source code.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 30, 2026, 12:50 AM
Security Audit — agent-trust-hub — codegraph-qa