git-convention

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE] (SAFE): The skill consists entirely of markdown documentation and formatting instructions. It does not include any scripts or automated command execution.
  • [EXTERNAL_DOWNLOADS] (SAFE): The documentation mentions standard industry tools like 'conventional-changelog' and 'commitlint'. These are provided as suggestions for the user to install manually in their environment rather than being executed by the skill itself.
  • [INDIRECT_PROMPT_INJECTION] (LOW): As the skill is designed to process user-provided code changes to generate commit messages, it technically has an ingestion surface for untrusted data. However, the risk is minimal as the output is text-only and follows a strict structure, and there are no high-privilege capabilities associated with this skill.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:32 PM