golang-uber-dig
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to process and edit Go source files (**/*.go). This creates a standard surface for indirect prompt injection inherent to development tools.
- Ingestion points: Go source files accessed via Read, Glob, and Grep tools.
- Boundary markers: No specific markers are used to separate project code from agent instructions.
- Capability inventory: The agent can write to the filesystem, execute Go and Git commands, and fetch external documentation.
- Sanitization: No explicit sanitization of ingested code content is performed.
- [COMMAND_EXECUTION]: The skill facilitates the use of standard development tools, including Go dependency management (go get), testing (go test), and version control (git). It also references the gopls language server for code navigation.
- [EXTERNAL_DOWNLOADS]: The skill references and downloads documentation and library components from well-known and reputable sources including the official Go package registry (pkg.go.dev) and the uber-go organization on GitHub.
Audit Metadata