git-workflow

Pass

Audited by Gen Agent Trust Hub on Mar 9, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the Bash tool to run Git operations and local scripts. These actions are used exclusively for repository management and are verified against the repository's state both before and after execution.
  • [PROMPT_INJECTION]: Instructions emphasize safety and prevent risky commands. Potential risks from reading repository content (indirect prompt injection) are mitigated by requiring human verification at critical steps in the workflow.
  • [EXTERNAL_DOWNLOADS]: The skill connects to well-known services like GitHub to synchronize code and manage pull requests, which is standard functionality for version control tasks.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 9, 2026, 08:34 PM
Security Audit — agent-trust-hub — git-workflow