drupal-mr

Pass

Audited by Gen Agent Trust Hub on Apr 27, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides standard Git commands (clone, remote add, fetch, checkout, push) intended for the user or a tool-enabled agent to manage Drupal project code. These operations are scoped to a local cache directory (~/.cache/drupal-contrib/).
  • [EXTERNAL_DOWNLOADS]: Facilitates cloning project repositories from git.drupalcode.org and git.drupal.org, which are the official and well-known hosting services for the Drupal ecosystem.
  • [DATA_EXFILTRATION]: Includes instructions for the user to configure SSH keys and personal access tokens for authentication with Drupal's official Git infrastructure. These references are instructional and do not involve unauthorized access or transmission of sensitive data to untrusted third parties.
  • [PROMPT_INJECTION]: Uses placeholders like {project} and {issue_number} to help generate relevant commands. This is standard functional templating and does not attempt to bypass agent safety filters or override system instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 27, 2026, 11:21 AM