skills/vltansky/vladstack/vs-fix-pr/Gen Agent Trust Hub

vs-fix-pr

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFE
Full Analysis
  • [DATA_EXFILTRATION]: Accesses pull request metadata and reviewer comments via the GitHub CLI. This data is used locally within the agent's context to analyze feedback and is not transmitted to unauthorized external domains.
  • [COMMAND_EXECUTION]: Utilizes git and gh commands to manage local branches, resolve PR numbers, and check CI build statuses. All identified commands are standard for PR management and are executed with user oversight.
  • [PROMPT_INJECTION]: Processes external content from PR comments which represents an indirect prompt injection surface. The skill mitigates this risk through strict 'Critical Rules' that require the agent to draft responses and fixes for user review and approval before execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 03:12 PM
Security Audit — agent-trust-hub — vs-fix-pr