gate-check
Pass
Audited by Gen Agent Trust Hub on Mar 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious behavior, obfuscation, or security vulnerabilities were detected. The skill uses standard development tools for project validation.
- [COMMAND_EXECUTION]: The skill uses Bash to run local tests as a core part of its validation logic. This is a legitimate use of the tool within the project environment.
- [PROMPT_INJECTION]: The skill has an indirect prompt injection surface. Ingestion points: project files in design/gdd/, src/, and tests/. Boundary markers: absent. Capability inventory: Bash, Read, Glob, Grep. Sanitization: absent. The risk is considered safe as these operations are core to the skill's function and the agent acts as an advisory tool.
Audit Metadata