Security audit
Finishing A Development Branch
Security checks for vulnerabilities and agentic risk
Overview
This skill is a disclosed Git branch cleanup workflow that can merge, push, or delete work only through explicit user choices.
Before installing, be aware that this skill can guide an agent through real Git changes, including merges, pushes, branch deletion, and worktree removal. Use it only in repositories where you are comfortable making those changes, and review the branch/worktree details carefully before confirming discard.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
