skills/tjcages/skills/pr-writing/Gen Agent Trust Hub

pr-writing

Pass

Audited by Gen Agent Trust Hub on Aug 25, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute a local shell script bash scripts/pr-lint.sh to validate the formatting and content of commit messages against the provided rules.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted input in the form of git diff output. * Ingestion points: git diff main...HEAD --stat and code hunks (SKILL.md). * Boundary markers: Absent. * Capability inventory: Execution of bash scripts/pr-lint.sh (SKILL.md). * Sanitization: Absent. The vulnerability surface is inherent to the skill's primary function of summarizing code changes.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 25, 2026, 10:10 PM
Security Audit — agent-trust-hub — pr-writing