code-reviewer

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs routing logic by inspecting file extensions and directory paths within the project workspace. It lacks dangerous primitives such as shell execution, file modification, or network access.
  • [DATA_EXPOSURE]: The skill reads project-specific files including qx_method_candidates.md, model-code-analyzer.md, and source code files. These accesses are restricted to the project context and do not target sensitive system locations.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests data from generated code and documentation files to determine routing. The risk is considered safe as the skill lacks exploitable capabilities like command execution or file-writing primitives.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 12:52 PM
Security Audit — agent-trust-hub — code-reviewer