git-commit-instructions

Pass

Audited by Gen Agent Trust Hub on Apr 2, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses shell commands including git status, git log, git diff, git add, and git commit to manage repository changes. These operations are within the expected scope of the skill's primary functionality.
  • [SAFE]: Implements a 'Git Safety Protocol' that explicitly forbids destructive operations such as force pushing to protected branches, performing hard resets, or modifying git configuration without explicit authorization.
  • [SAFE]: Provides clear instructions to never commit sensitive files such as .env, private keys, or credentials, which helps prevent accidental data exposure.
  • [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface because it processes untrusted data from local repository state.
    • Ingestion points: Reads data from git diff and git status (SKILL.md).
    • Boundary markers: No delimiters or explicit instructions are provided to the agent to disregard instructions embedded within the code diffs.
    • Capability inventory: The skill has capabilities to stage files (git add) and execute commits (git commit).
    • Sanitization: No explicit validation or sanitization is performed on the ingested diff content.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 2, 2026, 07:10 PM
Security Audit — agent-trust-hub — git-commit-instructions