snap-prd
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns such as prompt injection, unauthorized data exfiltration, or remote code execution were detected. The skill's behavior is consistent with its stated purpose of assisting in product documentation.
- [COMMAND_EXECUTION]: The skill instructions specify the use of the
gh(GitHub) CLI tool for listing labels and milestones and publishing issues. These are standard operations for automating repository workflows and do not involve arbitrary command execution. - [DATA_EXFILTRATION]: While the skill analyzes the codebase and interacts with GitHub, the process is transparent. The instructions explicitly mandate showing a complete draft to the user for approval and feedback before any publishing occurs, which mitigates the risk of unintended data exposure.
Audit Metadata