coderabbit-data-handling

Pass

Audited by Gen Agent Trust Hub on Mar 24, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No malicious prompt injection or behavior override patterns were detected. The use of instructional keywords like 'CRITICAL' is contextually appropriate for configuring security alerts in a third-party tool.
  • [DATA_EXFILTRATION]: No evidence of unauthorized data access or exfiltration. The skill actually provides patterns to prevent sensitive data (like .env files and private keys) from being sent to external AI engines.
  • [REMOTE_CODE_EXECUTION]: The skill does not perform any remote code downloads or execution. It provides static configuration examples for YAML files.
  • [COMMAND_EXECUTION]: No dangerous system commands or privilege escalation patterns were identified. The skill uses standard file manipulation tools to apply configurations.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 24, 2026, 05:06 PM