gc-review-all

Pass

Audited by Gen Agent Trust Hub on Apr 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious behavior, obfuscation, or data exfiltration patterns were detected. The skill performs legitimate auditing functions consistent with its stated purpose.
  • [COMMAND_EXECUTION]: The skill uses the Bash tool for routine project analysis, such as checking git status (git rev-parse), listing project files (git ls-files), and creating local directories for reports (mkdir). These operations are constrained to the local environment and do not pose a security risk.
  • [DATA_EXPOSURE]: The skill identifies the presence of sensitive files (e.g., .env, auth*, login*) to determine if specific audit modules like Identity & Access Management (IAM) should be executed. This is a discovery step for auditing and does not involve exfiltrating or improperly exposing the contents of these files.
  • [PROMPT_INJECTION]: The instructions establish a professional auditor persona and do not contain attempts to bypass safety filters or override agent constraints.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 2, 2026, 08:27 AM