apastra-setup-ci

Pass

Audited by Gen Agent Trust Hub on Mar 15, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill directs the agent to use mkdir and cp commands to install GitHub Actions workflow files from the skill's template directory into the project's .github/workflows/ folder.
  • [EXTERNAL_DOWNLOADS]: Mentions the use of npx skills add BintzGavin/apastra/skills/eval, which pulls additional components from the same vendor ('BintzGavin'). This is a legitimate vendor resource used for extending the toolset.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 15, 2026, 02:56 AM