night-watch
Pass
Audited by Gen Agent Trust Hub on Jul 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides operational guidelines for autonomous repository maintenance, including rules for branch isolation and mandatory test verification.
- [SAFE]: The 'Gotchas' section contains security-positive advice, such as warnings against using
npm audit fix --forceand recommendations for pinning Python dependencies via lockfiles to prevent supply chain inconsistencies. - [SAFE]: The frontmatter includes restrictive safety configurations, such as
disable-model-invocation: true, which limits the agent's ability to call the LLM directly during execution. - [SAFE]: No evidence of prompt injection, data exfiltration, or malicious remote code execution was found.
Audit Metadata