changelog

Pass

Audited by Gen Agent Trust Hub on Mar 28, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the Bash tool to execute git commands such as git rev-parse and git log. These operations are used to verify repository status and extract commit history for changelog generation.- [DYNAMIC_CONTEXT_INJECTION]: The skill uses dynamic context injection (the ! command syntax) in its YAML frontmatter to run git log and git tag at load time. This provides the agent with immediate repository context, which is a legitimate use case for a developer-oriented skill.- [INDIRECT_PROMPT_INJECTION]: The skill processes potentially untrusted data from git commit messages and local project documentation.
  • Ingestion points: Data is read from git log output and files within production/sprints/ and design/gdd/.
  • Boundary markers: The skill does not implement specific delimiters or 'ignore' instructions for the ingested content.
  • Capability inventory: The skill is permitted to use Read, Glob, Grep, and Bash tools.
  • Sanitization: There is no evidence of sanitization or filtering of the content retrieved from commits or local files.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 28, 2026, 12:11 PM
Security Audit — agent-trust-hub — changelog