Back to skill

Security audit

git-workflows-pro

Security checks for vulnerabilities and agentic risk

Overview

This skill gives safety-oriented guidance for advanced Git tasks and its risky commands are disclosed, scoped to Git recovery/history workflows, and paired with inspection or rollback advice.

Install this only if you want an agent to help with real Git history and recovery tasks. Review commands before execution, especially `reset --hard`, rebases, and force-pushes, because they can discard local state or rewrite shared history if used on the wrong commit or branch.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Tool MisuseTool Parameter Abuse, Chaining Abuse, Unsafe Defaults
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Tool Parameter Abuse

High
Category
Tool Misuse
Confidence
70% confidence
Finding

Tool parameters are crafted to achieve unintended or unsafe behavior. Parameter abuse can bypass intended safety checks (e.g. shell=True, --force, dangerous glob patterns).

Content

Scanner excerpt · references/history-surgery.md (reported line 90)May include surrounding context.

If history was rewritten and remote update is intended, prefer:

bash
git push --force-with-lease

Prefer --force-with-lease over --force unless the user explicitly understands the stronger overwrite behavior.

Tool Parameter Abuse

High
Category
Tool Misuse
Confidence
65% confidence
Finding

Tool parameters are crafted to achieve unintended or unsafe behavior. Parameter abuse can bypass intended safety checks (e.g. shell=True, --force, dangerous glob patterns).

Content

Scanner excerpt · references/recovery.md (reported line 26)May include surrounding context.

bash
git reflog --date=local --decorate -n 20
git reset --hard HEAD@{1}

Use the actual reflog entry that points at the lost state. Inspect first before resetting again.

Tool Parameter Abuse

High
Category
Tool Misuse
Confidence
65% confidence
Finding

Tool parameters are crafted to achieve unintended or unsafe behavior. Parameter abuse can bypass intended safety checks (e.g. shell=True, --force, dangerous glob patterns).

Content

Scanner excerpt · references/recovery.md (reported line 51)May include surrounding context.

bash
git reflog --date=local --decorate -n 20
git reset --hard HEAD@{1}

Use the actual reflog entry that points at the lost state. Inspect first before resetting again.

Static analysis

No suspicious patterns detected.