using-git-worktrees
Pass
Audited by Gen Agent Trust Hub on Mar 10, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes multiple shell commands to manage Git worktrees, configure repository settings, and run project-specific build or test scripts.\n- [EXTERNAL_DOWNLOADS]: Dependencies are automatically fetched from official package registries (such as NPM, PyPI, and Cargo) during the environment setup phase, based on the presence of standard project configuration files.\n- [PROMPT_INJECTION]: The skill ingests data from local configuration files (e.g., CLAUDE.md) to determine workflow preferences, which represents a surface for indirect prompt injection, though the execution logic is constrained to specific keyword searches.
Audit Metadata