constructive-boilerplate-pgpm-init
Pass
Audited by Gen Agent Trust Hub on Feb 27, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill provides documentation for using the
pgpmCLI tool to initialize project workspaces and modules. No malicious patterns such as prompt injection, obfuscation, or unauthorized data access were identified. - [EXTERNAL_DOWNLOADS]: The tool downloads project templates from the author's official GitHub repositories (
constructive-io/pgpm-boilerplatesandconstructive-io/sandbox-templates). These are recognized as trusted vendor resources. - [COMMAND_EXECUTION]: The skill describes the execution of
pgpmcommands which are standard for its intended purpose of project scaffolding and do not involve suspicious privilege escalation or persistence mechanisms.
Audit Metadata