project-review

Pass

Audited by Gen Agent Trust Hub on Mar 23, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [SAFE]: The skill implements a legitimate development process for validating software implementations. All operations are confined to the local project environment and relevant documentation structures.- [COMMAND_EXECUTION]: The skill utilizes the Bash tool to execute git diff for codebase inspection and gh pr list to retrieve pull request information. These commands are informational in nature and are used within the scope of code review tasks without posing a risk of system compromise.- [DATA_EXFILTRATION]: While the skill accesses project configuration and source files, these actions are required for its primary function. There are no network requests or instructions to transmit sensitive data to external or untrusted endpoints.- [PROMPT_INJECTION]: The instructions for the agent and the sub-agent (gsp-reviewer) are technical, operational, and lack any patterns indicative of attempts to bypass safety filters or override system-level instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 23, 2026, 07:13 PM