Passed all audits
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
passThis skill facilitates the execution of development plans by reading tasks from an external file and performing associated actions like testing and committing code. The main security concern is the potential for indirect prompt injection via the plan file, which could lead to unauthorized command execution if the plan contains malicious content.
Socket
passNo alerts
Snyk
passRisk: LOW · No issues