apastra-setup-ci
Pass
Audited by Gen Agent Trust Hub on Mar 15, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill directs the agent to use
mkdirandcpcommands to install GitHub Actions workflow files from the skill's template directory into the project's.github/workflows/folder. - [EXTERNAL_DOWNLOADS]: Mentions the use of
npx skills add BintzGavin/apastra/skills/eval, which pulls additional components from the same vendor ('BintzGavin'). This is a legitimate vendor resource used for extending the toolset.
Audit Metadata