glab-duo

Pass

Audited by Gen Agent Trust Hub on Aug 18, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill documents the use of glab duo cli --install to download and install the GitLab Duo CLI binary. As GitLab is a well-known service, this installation is a standard administrative operation.
  • [COMMAND_EXECUTION]: The skill utilizes the glab command-line tool to perform operations such as authentication and interacting with GitLab Duo AI chat.
  • [PROMPT_INJECTION]: The glab duo ask feature processes natural language prompts to suggest shell commands, which presents an indirect prompt injection surface. Ingestion points: Natural language prompts provided by the user to the ask command. Boundary markers: The documentation states that the tool provides an explanation and requires manual confirmation before any command is run. Capability inventory: Execution of suggested Git commands in the terminal. Sanitization: Manual human review and confirmation of all generated commands.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 18, 2026, 07:56 PM
Security Audit — agent-trust-hub — glab-duo