Use when reviewing rtk for command injection, shell escaping, hook injection, malicious output handling, or path traversal — covers the full rtk threat model with detection commands (ripgrep), safe patterns, and incident-response advisory templates
Use when reviewing rtk for command injection, shell escaping, hook injection, malicious output handling, or path traversal — covers the full rtk threat model with detection commands (ripgrep), safe patterns, and incident-response advisory templates
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.