cmd-chain-halt-code-reviewer
Pass
Audited by Gen Agent Trust Hub on Mar 8, 2026
Risk Level: SAFENO_CODEPROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns or security risks were identified. The instructions provide a standard framework for code review.
- [NO_CODE]: This skill consists of a single markdown file with instructions and contains no executable scripts or additional software components.
- [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface because it processes untrusted code changes as its primary input. * Ingestion points: Code changes retrieved via the git diff command (referenced in SKILL.md). * Boundary markers: None present to distinguish instructions from analyzed code. * Capability inventory: Local command execution via git diff (SKILL.md). * Sanitization: No sanitization or validation of the input code diff is performed.
Audit Metadata