scan-effect-solutions

Pass

Audited by Gen Agent Trust Hub on Apr 6, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses a vendor-specific CLI tool, effect-solutions, to perform audits. The commands include effect-solutions list and various show subcommands (e.g., show tsconfig, show services-and-layers). These are used for the primary purpose of auditing the repository and are consistent with the skill's stated functionality.
  • [DATA_INGESTION_SURFACE]: The skill performs audits by reading and analyzing repository files, including tsconfig.json, source code files, and test files. This creates a surface for indirect prompt injection where malicious content in the scanned files could attempt to influence the agent's report. However, the skill's logic is focused on reporting compliance metrics, which significantly limits the impact of such an attack.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 6, 2026, 04:55 AM