shipping-pr-reviews
Pass
Audited by Gen Agent Trust Hub on Jul 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill uses established command-line tools (
git,gh) to perform its stated functions. These operations are restricted to the local repository and the authenticated user's GitHub account. - [SAFE]: The dynamic workflow script in
references/review-fix-workflow.mduses standard platform APIs for orchestrating sub-agents. It implements safety-conscious patterns, such as usingisolation: 'worktree'to prevent parallel agents from interfering with the main branch and requiring adversarial verification of findings before attempting fixes. - [SAFE]: No indicators of prompt injection, data exfiltration, credential harvesting, or obfuscation were found in any of the skill files.
Audit Metadata