changelog-generator

Pass

Audited by Gen Agent Trust Hub on Apr 20, 2026

Risk Level: SAFENO_CODEPROMPT_INJECTION
Full Analysis
  • [SAFE]: No malicious patterns, hardcoded credentials, or unauthorized network operations were detected in the skill documentation or license.
  • [NO_CODE]: This skill consists purely of natural language instructions and lacks any Python, JavaScript, or shell scripts, eliminating the risk of direct remote code execution or privilege escalation.
  • [PROMPT_INJECTION]: The skill contains an indirect prompt injection surface as it analyzes untrusted git commit messages provided by third parties. 1. Ingestion points: Git commit history (as mentioned in SKILL.md). 2. Boundary markers: Absent from the provided instructions. 3. Capability inventory: Reading git logs and project-specific files like CHANGELOG_STYLE.md. 4. Sanitization: No explicit sanitization or commit message filtering is implemented.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 20, 2026, 07:13 AM
Security Audit — agent-trust-hub — changelog-generator