gh-cli
Audited by ZeroLeaks on Apr 15, 2026
The SKILL.md carries a transparency concern due to an obfuscated or encoded execution path, which weakens pre-use reviewability and makes it harder to fully assess what the skill does before loading it. Prompt injection boundaries stay reasonably clear, with no strong signals that the skill pushes the agent to treat external data as instructions. However, behavior analysis was not run, so downstream impact relative to a no-skill baseline remains unvalidated. Confidence is low: the obfuscation finding limits the ability to fully vet the skill's intent, and the absence of behavior testing means material risks could be going undetected.
The skill has 1 transparency concern that weaken pre-use reviewability, mainly around obfuscated or encoded execution path.
The scanned skill keeps data and instructions reasonably separate and does not strongly encourage the agent to treat external content as policy.
Behavior analysis was not run.
Obfuscated or encoded execution path