to-tasks
Pass
Audited by Gen Agent Trust Hub on Sep 9, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute specific shell commands using
gitandgh(GitHub CLI). These includegit status,git add,git commit, andgh pr viewto manage the lifecycle of a feature branch and its associated task files. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process external data such as roadmap briefs, project specifications, and codebase files. This creates a surface for indirect prompt injection where malicious instructions could be embedded in the analyzed documents, although the skill's capabilities are restricted to local file operations and standard version control actions.
Audit Metadata