codespring
Pass
Audited by Gen Agent Trust Hub on Apr 3, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill uses the '@codespring-app/cli' package, which is the official CLI tool provided by the vendor CodeSpringApp. This is a trusted resource for interacting with the platform.
- [COMMAND_EXECUTION]: The skill executes shell commands via the 'codespring' CLI to perform project management tasks, such as task updates and PRD synchronization. This functionality is the primary and intended use of the skill.
- [DATA_EXFILTRATION]: The skill syncs codebase analysis findings and project metadata to the CodeSpring API. This data transfer is a documented core feature of the integration and is directed to the vendor's official infrastructure.
Audit Metadata