Review recommended
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
passThe skill automates pull request reviews by orchestrating multiple AI agents. It is susceptible to indirect prompt injection because it ingests untrusted content from the pull request (code and documentation) and has the capability to write comments and modify PR descriptions using the GitHub CLI.
Socket
warn1 alert: gptAnomaly
Snyk
warnRisk: MEDIUM · 1 issue