z-aspire-orchestrator

Pass

Audited by Gen Agent Trust Hub on Apr 22, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes standard aspire and npm commands for service orchestration, such as aspire init, aspire start, and npm run aspire:build. These commands are consistent with the skill's documented purpose of managing development environments.
  • [SAFE]: A human-in-the-loop requirement is established, instructing the agent to wait for manual user review and approval of pull requests before proceeding, which mitigates the risk of automated unauthorized changes.
  • [SAFE]: No instances of hardcoded credentials, sensitive file exfiltration, or unauthorized persistence mechanisms were identified in the orchestration workflows.
  • [SAFE]: The skill uses legitimate documentation retrieval mechanisms (aspire docs search) to inform its actions, following the official guidance provided by the tool's CLI.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 22, 2026, 11:53 AM